A flowchart with interconnected blue circles containing icons. Arrows in green, yellow, and blue link the circles. A small blue circle with a power icon is at the top left. The upwind logo is in the top left corner.

Automatically View High-Privilege Identity Insights in the Upwind Topology Map

Denise Ashur March 12, 2025

Automatically View High-Privilege Identity Insights in the Upwind Topology Map

We’re excited to introduce a powerful new capability in the Upwind Cloud Security Platform –  enhancing security by providing seamless visibility into highly privileged identities for every containerized resource in your cloud environment. Now available directly in the Upwind Topology Map, this feature helps detect and mitigate excessive permissions, reducing the risk of privilege escalation attacks and unauthorized access.

Screenshot of a software dashboard showing a map and an overview. The map on the left displays nodes and connections. The overview on the right contains details about Kubernetes deployment and resources, including error messages and resource names.

This enhancement makes it even easier to visualize Upwind’s runtime-driven approach, going beyond traditional CWPP solutions. It correlates real-time network topology, privileged identities, posture misconfigurations, threats, vulnerabilities, and API weaknesses – giving you deeper contextualized security insights to prioritize actual risks.

With this update, you can now easily view high-privilege source information, including:

  • Cloud IAM High-Privilege Roles
  • Kubernetes High-Privilege Roles
  • Kubernetes Security Context
  • Pivot to Cloud – K8s Resources with Cloud Permissions
A network map interface from Upwind shows various nodes and connections, including Kubernetes clusters and AWS resources. A legend details resource states with colored icons, and a sidebar features options like cloud accounts and assets.

This granular identity insight makes it even easier to rapidly assess resource risk context and proactively remediate unnecessary privileges, which ensures stronger protection for your most critical cloud assets. Among other benefits, it helps identify overly permissive Kubernetes service accounts that could allow unintended access to cloud resources, reducing the risk of lateral movement by attackers.

User interface displaying a network map with interconnected nodes and services labeled AWS, Azure, MongoDB, and DNS. A dropdown menu shows filters for resources, with options like AWS and DNS. Various system components and paths are highlighted.

By leveraging Upwind’s correlated container and identity security capabilities, security teams can connect identity risk with vulnerabilities, threats, posture findings, and APIs, achieving holistic protection across containerized environments. To learn how to start correlating identity context with risk findings, schedule a demo today.

Contents

Further Reading

Show Me the Context

Show Me the Context: Building the Full Request Context for AWS IAM

This post was written in early August 2026, ahead of our fwd:cloudsec Europe talk. On August 25, AWS launched the Access Troubleshooter (currently in public preview), a first-party feature that surfaces the request context for denied requests. We've updated this post to account for it. When the IAM engine evaluates your request, it matches your…
AI LABS

Building the Future: Introducing the Upwind AI Security Lab

I have always been fascinated by what comes next. Growing up, I watched technology reinvent itself again and again, from early gaming and the dot-com era to SaaS, cloud, and modern software development. I remember wondering when I would get the chance to help build what came next. At the time, I was mostly watching…
5 Back to School Security Predictions: The Attacker Class Average Just Moved
5 Back to School Security Predictions: The Attacker Class Average Just Moved

5 Back to School Security Predictions: The Attacker Class Average Just Moved

Back to school season is here, which makes this a good moment to look at what changed in the threat landscape over the summer. AI-assisted attackers haven't climbed toward the top of the field so much as filled in the middle of it and the middle is the population almost no security program was designed…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS