├── .devcontainer ├── Dockerfile └── devcontainer.json ├── .github ├── actions │ ├── Git-Initialize │ │ └── action.yml │ ├── Git-PullRequest │ │ └── action.yml │ └── Git-Push │ │ └── action.yml └── workflows │ ├── Pull-EntraOpsPrivilegedEAM.yaml │ ├── Push-EntraOpsPrivilegedEAM.yaml │ └── Update-EntraOps.yaml ├── CHANGELOG.md ├── Classification ├── Global.json └── Templates │ ├── Classification_AadResources.Param.json │ ├── Classification_AadResources.json │ ├── Classification_AppRoles.json │ ├── Classification_Defender.json │ ├── Classification_DeviceManagement.json │ └── Classification_IdentityGovernance.json ├── EntraOps ├── EntraOps.psd1 ├── EntraOps.psm1 └── Public │ ├── Configuration │ ├── New-EntraOpsConfigFile.ps1 │ ├── New-EntraOpsWorkloadIdentity.ps1 │ ├── Update-EntraOpsClassificationFiles.ps1 │ └── Update-EntraOpsRequiredWorkflowParameters.ps1 │ ├── Core │ ├── Clear-EntraOpsCache.ps1 │ ├── Connect-EntraOps.ps1 │ ├── Disconnect-EntraOps.ps1 │ ├── Get-EntraOpsEntraObject.ps1 │ ├── Install-EntraOpsAllRequiredModules.ps1 │ ├── Install-EntraOpsRequiredModule.ps1 │ ├── Invoke-EntraOpsAzGraphQuery.ps1 │ ├── Invoke-EntraOpsMsGraphQuery.ps1 │ ├── Push-EntraOpsLogsIngestionAPI.ps1 │ └── Update-EntraOps.ps1 │ ├── PrivilegedAccess │ ├── Expand-EntraOpsPrivilegedEamJsonFile.ps1 │ ├── Export-EntraOpsClassificationAppRoles.ps1 │ ├── Export-EntraOpsClassificationDeviceManagementRoles.ps1 │ ├── Export-EntraOpsClassificationDirectoryRoles.ps1 │ ├── Get-EntraOpsClassificationControlPlaneObjects.ps1 │ ├── Get-EntraOpsPrivilegedAppRoles.ps1 │ ├── Get-EntraOpsPrivilegedDefenderRoles.ps1 │ ├── Get-EntraOpsPrivilegedDeviceRoles.ps1 │ ├── Get-EntraOpsPrivilegedEAM.ps1 │ ├── Get-EntraOpsPrivilegedEAMDefender.ps1 │ ├── Get-EntraOpsPrivilegedEAMEntraId.ps1 │ ├── Get-EntraOpsPrivilegedEAMIdGov.ps1 │ ├── Get-EntraOpsPrivilegedEAMIntune.ps1 │ ├── Get-EntraOpsPrivilegedEAMResourceApps.ps1 │ ├── Get-EntraOpsPrivilegedEAMResourceAppsFirstParty.ps1 │ ├── Get-EntraOpsPrivilegedEntraIdRoles.ps1 │ ├── Get-EntraOpsPrivilegedEntraObject.ps1 │ ├── Get-EntraOpsPrivilegedIdGovRoles.ps1 │ ├── Get-EntraOpsPrivilegedTransitiveGroupMember.ps1 │ ├── New-EntraOpsPrivilegedAdministrativeUnit.ps1 │ ├── New-EntraOpsPrivilegedConditionalAccessGroup.ps1 │ ├── New-EntraOpsPrivilegedUnprotectedAdministrativeUnit.ps1 │ ├── Save-EntraOpsPrivilegedEAMEnrichmentToWatchLists.ps1 │ ├── Save-EntraOpsPrivilegedEAMInsightsCustomTable.ps1 │ ├── Save-EntraOpsPrivilegedEAMJson.ps1 │ ├── Save-EntraOpsPrivilegedEAMWatchLists.ps1 │ ├── Update-EntraOpsClassificationControlPlaneScope.ps1 │ ├── Update-EntraOpsPrivilegedAdministrativeUnit.ps1 │ ├── Update-EntraOpsPrivilegedConditionalAccessGroup.ps1 │ └── Update-EntraOpsPrivilegedUnprotectedAdministrativeUnit.ps1 │ └── ServicePrincipals │ ├── Get-EntraOpsManagedIdentityAssignments.ps1 │ ├── Get-EntraOpsWorkloadIdentityAttackPaths.ps1 │ ├── Get-EntraOpsWorkloadIdentityInfo.ps1 │ ├── Get-EntraOpsWorkloadIdentityRecommendations.ps1 │ ├── Save-EntraOpsWorkloadIdentityEnrichmentWatchLists.ps1 │ └── Save-EntraOpsWorkloadIdentityInfoWatchList.ps1 ├── LICENSE ├── Parsers ├── PrivilegedEAM_CustomTable.json ├── PrivilegedEAM_CustomTable.yaml ├── PrivilegedEAM_WatchLists.json └── PrivilegedEAM_WatchLists.yaml ├── Queries └── PowerShell │ └── PrivilegedEAM.yaml ├── README.md ├── Samples └── AzBillingRoleAssignments.json └── Workbooks ├── EntraOps Privileged EAM - Overview.json ├── EntraOps Privileged EAM - Overview.workbook ├── EntraOps Privileged EAM - Workload Identities.json └── EntraOps Privileged EAM - Workload Identities.workbook /.devcontainer/Dockerfile: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.devcontainer/Dockerfile -------------------------------------------------------------------------------- /.devcontainer/devcontainer.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.devcontainer/devcontainer.json -------------------------------------------------------------------------------- /.github/actions/Git-Initialize/action.yml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.github/actions/Git-Initialize/action.yml -------------------------------------------------------------------------------- /.github/actions/Git-PullRequest/action.yml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.github/actions/Git-PullRequest/action.yml -------------------------------------------------------------------------------- /.github/actions/Git-Push/action.yml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.github/actions/Git-Push/action.yml -------------------------------------------------------------------------------- /.github/workflows/Pull-EntraOpsPrivilegedEAM.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.github/workflows/Pull-EntraOpsPrivilegedEAM.yaml -------------------------------------------------------------------------------- /.github/workflows/Push-EntraOpsPrivilegedEAM.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.github/workflows/Push-EntraOpsPrivilegedEAM.yaml -------------------------------------------------------------------------------- /.github/workflows/Update-EntraOps.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/.github/workflows/Update-EntraOps.yaml -------------------------------------------------------------------------------- /CHANGELOG.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/CHANGELOG.md -------------------------------------------------------------------------------- /Classification/Global.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Global.json -------------------------------------------------------------------------------- /Classification/Templates/Classification_AadResources.Param.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Templates/Classification_AadResources.Param.json -------------------------------------------------------------------------------- /Classification/Templates/Classification_AadResources.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Templates/Classification_AadResources.json -------------------------------------------------------------------------------- /Classification/Templates/Classification_AppRoles.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Templates/Classification_AppRoles.json -------------------------------------------------------------------------------- /Classification/Templates/Classification_Defender.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Templates/Classification_Defender.json -------------------------------------------------------------------------------- /Classification/Templates/Classification_DeviceManagement.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Templates/Classification_DeviceManagement.json -------------------------------------------------------------------------------- /Classification/Templates/Classification_IdentityGovernance.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Classification/Templates/Classification_IdentityGovernance.json -------------------------------------------------------------------------------- /EntraOps/EntraOps.psd1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/EntraOps.psd1 -------------------------------------------------------------------------------- /EntraOps/EntraOps.psm1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/EntraOps.psm1 -------------------------------------------------------------------------------- /EntraOps/Public/Configuration/New-EntraOpsConfigFile.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Configuration/New-EntraOpsConfigFile.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Configuration/New-EntraOpsWorkloadIdentity.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Configuration/New-EntraOpsWorkloadIdentity.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Configuration/Update-EntraOpsClassificationFiles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Configuration/Update-EntraOpsClassificationFiles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Configuration/Update-EntraOpsRequiredWorkflowParameters.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Configuration/Update-EntraOpsRequiredWorkflowParameters.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Clear-EntraOpsCache.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Clear-EntraOpsCache.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Connect-EntraOps.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Connect-EntraOps.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Disconnect-EntraOps.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Disconnect-EntraOps.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Get-EntraOpsEntraObject.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Get-EntraOpsEntraObject.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Install-EntraOpsAllRequiredModules.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Install-EntraOpsAllRequiredModules.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Install-EntraOpsRequiredModule.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Install-EntraOpsRequiredModule.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Invoke-EntraOpsAzGraphQuery.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Invoke-EntraOpsAzGraphQuery.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Invoke-EntraOpsMsGraphQuery.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Invoke-EntraOpsMsGraphQuery.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Push-EntraOpsLogsIngestionAPI.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Push-EntraOpsLogsIngestionAPI.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/Core/Update-EntraOps.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/Core/Update-EntraOps.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Expand-EntraOpsPrivilegedEamJsonFile.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Expand-EntraOpsPrivilegedEamJsonFile.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Export-EntraOpsClassificationAppRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Export-EntraOpsClassificationAppRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Export-EntraOpsClassificationDeviceManagementRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Export-EntraOpsClassificationDeviceManagementRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Export-EntraOpsClassificationDirectoryRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Export-EntraOpsClassificationDirectoryRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsClassificationControlPlaneObjects.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsClassificationControlPlaneObjects.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedAppRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedAppRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedDefenderRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedDefenderRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedDeviceRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedDeviceRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAM.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAM.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMDefender.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMDefender.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMEntraId.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMEntraId.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMIdGov.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMIdGov.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMIntune.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMIntune.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMResourceApps.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMResourceApps.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMResourceAppsFirstParty.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEAMResourceAppsFirstParty.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEntraIdRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEntraIdRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEntraObject.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedEntraObject.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedIdGovRoles.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedIdGovRoles.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedTransitiveGroupMember.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Get-EntraOpsPrivilegedTransitiveGroupMember.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/New-EntraOpsPrivilegedAdministrativeUnit.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/New-EntraOpsPrivilegedAdministrativeUnit.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/New-EntraOpsPrivilegedConditionalAccessGroup.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/New-EntraOpsPrivilegedConditionalAccessGroup.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/New-EntraOpsPrivilegedUnprotectedAdministrativeUnit.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/New-EntraOpsPrivilegedUnprotectedAdministrativeUnit.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMEnrichmentToWatchLists.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMEnrichmentToWatchLists.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMInsightsCustomTable.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMInsightsCustomTable.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMJson.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMJson.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMWatchLists.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Save-EntraOpsPrivilegedEAMWatchLists.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Update-EntraOpsClassificationControlPlaneScope.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Update-EntraOpsClassificationControlPlaneScope.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Update-EntraOpsPrivilegedAdministrativeUnit.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Update-EntraOpsPrivilegedAdministrativeUnit.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Update-EntraOpsPrivilegedConditionalAccessGroup.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Update-EntraOpsPrivilegedConditionalAccessGroup.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/PrivilegedAccess/Update-EntraOpsPrivilegedUnprotectedAdministrativeUnit.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/PrivilegedAccess/Update-EntraOpsPrivilegedUnprotectedAdministrativeUnit.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/ServicePrincipals/Get-EntraOpsManagedIdentityAssignments.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/ServicePrincipals/Get-EntraOpsManagedIdentityAssignments.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/ServicePrincipals/Get-EntraOpsWorkloadIdentityAttackPaths.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/ServicePrincipals/Get-EntraOpsWorkloadIdentityAttackPaths.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/ServicePrincipals/Get-EntraOpsWorkloadIdentityInfo.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/ServicePrincipals/Get-EntraOpsWorkloadIdentityInfo.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/ServicePrincipals/Get-EntraOpsWorkloadIdentityRecommendations.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/ServicePrincipals/Get-EntraOpsWorkloadIdentityRecommendations.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/ServicePrincipals/Save-EntraOpsWorkloadIdentityEnrichmentWatchLists.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/ServicePrincipals/Save-EntraOpsWorkloadIdentityEnrichmentWatchLists.ps1 -------------------------------------------------------------------------------- /EntraOps/Public/ServicePrincipals/Save-EntraOpsWorkloadIdentityInfoWatchList.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/EntraOps/Public/ServicePrincipals/Save-EntraOpsWorkloadIdentityInfoWatchList.ps1 -------------------------------------------------------------------------------- /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/LICENSE -------------------------------------------------------------------------------- /Parsers/PrivilegedEAM_CustomTable.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Parsers/PrivilegedEAM_CustomTable.json -------------------------------------------------------------------------------- /Parsers/PrivilegedEAM_CustomTable.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Parsers/PrivilegedEAM_CustomTable.yaml -------------------------------------------------------------------------------- /Parsers/PrivilegedEAM_WatchLists.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Parsers/PrivilegedEAM_WatchLists.json -------------------------------------------------------------------------------- /Parsers/PrivilegedEAM_WatchLists.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Parsers/PrivilegedEAM_WatchLists.yaml -------------------------------------------------------------------------------- /Queries/PowerShell/PrivilegedEAM.yaml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Queries/PowerShell/PrivilegedEAM.yaml -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/README.md -------------------------------------------------------------------------------- /Samples/AzBillingRoleAssignments.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Samples/AzBillingRoleAssignments.json -------------------------------------------------------------------------------- /Workbooks/EntraOps Privileged EAM - Overview.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Workbooks/EntraOps Privileged EAM - Overview.json -------------------------------------------------------------------------------- /Workbooks/EntraOps Privileged EAM - Overview.workbook: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Workbooks/EntraOps Privileged EAM - Overview.workbook -------------------------------------------------------------------------------- /Workbooks/EntraOps Privileged EAM - Workload Identities.json: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Workbooks/EntraOps Privileged EAM - Workload Identities.json -------------------------------------------------------------------------------- /Workbooks/EntraOps Privileged EAM - Workload Identities.workbook: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/Cloud-Architekt/EntraOps/HEAD/Workbooks/EntraOps Privileged EAM - Workload Identities.workbook --------------------------------------------------------------------------------