Token Security is a cloud-based identity security platform that focuses on managing non-human identities (NHI) in cloud environments. The platform operates through three main functions: 1. Discovery and inventory of all machine identities, credentials, and entitlements across cloud infrastructure 2. Continuous monitoring and risk assessment of identity exposure, including detection of stale, local, unfederated, or shadow identities 3. Lifecycle management of machine identities, including credential rotation, access reviews, and deactivation of unused accounts The solution is agentless and performs automated scanning and log analysis to maintain visibility of machine identities across cloud resources, including kubernetes clusters, databases, servers, and containers.
FEATURES
SIMILAR TOOLS
AWS IAM Security Assessment tool for identifying violations of least privilege and generating risk-prioritized reports.
DumpsterDiver is a tool for analyzing big volumes of data to find hardcoded secrets like keys and passwords.
Akamai Identity Cloud is a CIAM solution that manages customer identities, enhances user experiences, and ensures data protection and regulatory compliance for high-volume consumer brands.
A cloud-based identity and access management solution that provides access governance, compliance monitoring, and risk management for hybrid environments.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.