Problem Statement
Describe a low-risk cloud enumeration plan after you obtain a scoped role.
Explanation
Start read-only. List identity context, account or project info, and regions. Enumerate storage, compute, and IAM policies with describe or list only. Do not create, modify, or delete any resource. Capture resource ARNs, tags, and attached policies. Map trust relationships to understand privilege paths. Keep the session short-lived and log every call.
Code Solution
SolutionRead Only
aws sts get-caller-identity aws ec2 describe-regions aws iam list-roles --max-items 50
