Managing identity risks across human and non-human accounts in SaaS applications like
Salesforce can be challenging. To help you maintain strong identity posture,
the Identity Security component in SaaS
Security Posture Management now gives you visibility into account risks in your
Salesforce instance.
Previously, the Identity Security component introduced the ability to identify
problems with your multi-factor authentication (MFA) implementation, including MFA
enrollment and sign-in issues. Now, the Identity Security component also gives you
visibility into Salesforce account risks for human and non-human accounts. Human
accounts are associated with an individual who accesses Salesforce through a
web interface with ID and password credentials. Nonhuman accounts are
typically services that authenticate to a Salesforce API by using a token or an API
key.
By connecting to your Salesforce instance, the Identity Security component helps you
identify the following account risks so you can take action:
- Human accounts that have not been accessed for a specified period.
- Accounts that have not had their credentials rotated for a specified
period.
- Human accounts that have excessive permissions.
By connecting to your identity provider, the Identity Security component also helps
you identify local Salesforce accounts, which are accounts that were not created
through your identity provider.