Oort is now part of Cisco  |  Learn more

Try it free

Oort Extends Identity Threat Detection with New AWS Integration

Complements existing integrations to add new protections for identities in AWS


BOSTON, MA - August. 17, 2023 - Oort, a leading provider of Identity Threat Detection and Response (ITDR), has today released an integration with Amazon Web Services (AWS). With this announcement, Oort is uniquely positioned to provide the richest, all-encompassing view of an organization's identity landscape.

AWS is the most popular cloud computing service, relied on by 32 percent of users worldwide. However, AWS also acts as an identity provider, managing user access and resource permissions. These identities interest attackers, who have targeted AWS accounts to gain unauthorized access, exfiltrate valuable data, or misappropriate resources.

Therefore, security teams must protect AWS accounts to protect their invaluable data and critical resources – the crown jewels of businesses. This can be challenging because organizations have no effective ways to get a unified view of all their AWS accounts. Worse still, even when they do have a view into their AWS accounts, this lacks context about the user, found in other identity providers, like Okta, Azure AD, or Workday. 

Despite increased momentum around ITDR, AWS is a missing piece of the puzzle. Nicolas Dard, VP of Product at Oort, says, “for too long, organizations have monitored AWS in silos – devoid of context from other identity tools. This has given rise to overwhelming noise and arduous workloads.” 

Although some existing tools help identify threats in AWS, they fall short of providing effective posture-based, preventative insights. This includes detecting dormant accounts, de-provisioning mishaps, configuration issues, and over-permissioning.

Oort’s new integration with AWS solves these challenges, providing unrivaled posture and threat insights for AWS accounts. Customers can set up Oort’s AWS integration with an API key within minutes and ingest information on users, groups, permissions, and events. By combining static entitlement data with dynamic, event-based data, Oort provides unique insights into identity security posture and identity threats.

Moreover, Oort merges AWS user data with insights from other identity providers, such as Workday, Azure AD, Okta, GitHub, Salesforce, Duo, Slack, and Google. By removing frustrating silos and providing security teams with actionable insights, Oort makes identity security possible.  

By offering real-time alerts coupled with invaluable historical insights, Oort provides an unprecedented depth of clarity in identity threat detection.

Dard is buoyant about what this integration means for the future. “Oort provides security teams with a single pane of glass into all their identities, and I’m delighted to add to this with our new AWS integration. Armed with this data, we have some exciting future capabilities planned.”

To learn more about Oort's integration with AWS, request a demo: https://oort.io/demo


About Oort

Oort is an identity-centric enterprise security platform. As a turnkey solution for Identity Threat Detection and Response (ITDR), Oort is providing immediate value to security teams by working with existing sources of identity to enable comprehensive identity attack surface management in minutes. Led by a team with decades of domain expertise across identity, networking, and security, Oort is backed by venture capital investors including Energy Impact Partners, .406 Ventures, Bain Capital Ventures, Cisco Investments and others. Market-leading technology companies, like Collibra and Avid Technology, rely on Oort to provide full visibility into their identity populations. To learn more, please visit oort.io.  

Recent Blogs

Duo SSO Logging Improvements 

We’re committed to enhancing the visibility of data sourced from Duo.true

User Linkage Suggestions 

This week, we’re excited to introduce User linkage Suggestions withintrue