AWS Security Agent
(securityagent)
IAM Changes
Services
2026-03-28
2026-03-28
25 updated actions | 8 removed actions
Updates
Actions
BatchGetTasks
Dependents
+ kms:DescribeKey
BatchDeletePentests
Dependents
+ kms:Decrypt
BatchGetAgentSpaces
Dependents
+ kms:Decrypt
BatchGetFindings
Dependents
+ kms:Decrypt
BatchGetPentestJobContentMetadata
Dependents
+ kms:Decrypt
BatchGetPentestJobTasks
Dependents
+ kms:Decrypt
BatchGetPentestJobs
Dependents
+ kms:Decrypt
BatchGetPentests
Dependents
+ kms:Decrypt
BatchGetTargetDomains
Dependents
+ kms:Decrypt
+ kms:DescribeKey
+ kms:GenerateDataKeyWithoutPlaintext
CreateMembership
Dependents
+ kms:Decrypt
CreateSecurityRequirement
Dependents
+ kms:Decrypt
ListAgentSpaces
Dependents
+ kms:Decrypt
ListApplications
Dependents
+ kms:Decrypt
ListDiscoveredEndpoints
Dependents
+ kms:Decrypt
ListFindings
Dependents
+ kms:Decrypt
ListIntegratedResources
Dependents
+ kms:Decrypt
ListResourcesFromIntegration
Dependents
+ kms:Decrypt
+ kms:GenerateDataKey
ListSecurityRequirements
Dependents
+ kms:Decrypt
+ kms:GenerateDataKey
ListTagsForResource
Dependents
+ kms:Decrypt
StartCodeRemediation
Dependents
+ kms:Decrypt
StartPentestExecution
Dependents
+ kms:DescribeKey
StartPentestJob
Dependents
+ kms:Decrypt
StopPentestJob
Dependents
+ kms:Decrypt
CreateApplication
Resources
- Application
GetDesignReviewArtifact
Resources
- Application
Deletions
Actions
BatchGetSecurityTestContentMetadata
Description:
Grants permission to retrieve multiple security testing contents metadata in a single request
Access:
Read
Resources:
Name: AgentSpace
Required: Yes
BatchGetTasks
Description:
Grants permission to retrieve multiple security testing tasks in a single request
Access:
Read
Resources:
Name: AgentSpace
Required: Yes
DescribeFindings
Description:
Grants permission to retrieve security findings for a penetration test or security testing tasks in a penetration test
Access:
Read
Resources:
Name: AgentSpace
Required: Yes
GetCodeReviewTask
Description:
Grants permission to retrieve a Code Review Task
Access:
Read
Resources:
Name: AgentSpace
Required: Yes
GetDocReviewTask
Description:
Grants permission to retrieve a document review task
Access:
Read
Resources:
Name: AgentSpace
Required: Yes
ListTasks
Description:
Grants permission to list security testing tasks associated with a pentest job
Access:
List
Resources:
Name: AgentSpace
Required: Yes
StartPentestExecution
Description:
Grants permission to initiate the execution of a penetration test
Access:
Write
Resources:
Name: AgentSpace
Required: Yes
StopPentestExecution
Description:
Grants permission to stop the execution of a running penetration test
Access:
Write
Resources:
Name: AgentSpace
Required: Yes