Audit engagement

Privileged access review

A focused audit of applications concentrating on privileged accounts, dormant access, and joiner-mover-leaver trails.

Request a scoping call
Team discussing access records during an audit workshop

Purpose

When an audit of applications must answer a narrow question — who can elevate rights, who still has access after leaving, and whether certifications are meaningful — this engagement concentrates there.

Included

  • Extraction or screenshot sampling of privileged roles for named applications
  • Comparison against HR termination and transfer lists for a defined period
  • Review of emergency or break-glass account procedures and recent use
  • Written findings with severity ratings and owner suggestions

Not included

Identity product selection, directory redesign, or hands-on revocation of accounts. We report; your administrators remediate.

Timeline and next step

Most reviews complete in two to three weeks after access exports arrive. Ask for an estimate.