Amazon Web Services provider permissions - List of Amazon Web Services (AWS) permissions for use during Cortex Cortex Cloud onboarding to enable continuous monitoring in your cloud environment. - Administrator Guide - Cortex CLOUD

Cortex Cloud Runtime Security Documentation

Product
Cortex Cloud Application Security > Cortex CLOUD
License
Cloud Runtime Security
Creation date
2024-12-24
Last date published
2026-06-10
Category
Administrator Guide
Abstract

List of Amazon Web Services (AWS) permissions for use during Cortex Cortex Cloud onboarding to enable continuous monitoring in your cloud environment.

When onboarding Amazon Web Services (AWS), Cortex Cloud generates a CloudFormation authentication template that provisions the IAM roles and policies it needs to monitor your cloud environment. This page enumerates every permission that template requests, grouped by security capability.

Important

All conditional capabilities documented below require the mandatory Base and Discovery Engine permissions to be deployed alongside them. Base provides the foundational CortexPlatformRole and AWS-managed read-only baseline. Discovery Engine extends that baseline with the asset-inventory coverage that every other capability assumes.