CIAM-IAM Implementation Considerations Flashcards
The AAA identity and access management model is a framework which is embedded into the digital identity and access management world to manage access to assets and maintain system security. AAA stands for A__________, A__________, and A__________.
AAA stands for Authentication, Authorization, and Accounting.
4 Primary types of authentication methods
- Static passwords which remain active until they are changed or expired
- One-time password (OTP) such as codes delivered thorough SMS texts or tokens used for each access session
- Digital certificate
- Biometric credential
What is Multi-Factor Authentication (MFA)
It is combining more than one of these categories
- Something you know such has a password
- Something you have such as a key fob or cell phone; and
- Something you are such as your finger prints, voice, hand geometry, etc also called “biometrics authentications.”
Any authorization beyond normal job functions opens the door for either accidental or malicious violations of security objectives; CIA
Confidentiality, Integrity, and Availability
The Principle of Least Privilege requires that users, processes, programs, and devices must only be granted…
…sufficient access necessary to perform their required functions, and nothing more
The principle of least privilege must be applied at all times until it is time to temporarily escalate access when warranted by business requirements.
In order to be effective in IAM accounting, generic and shared accounts must be
avoided so that the actions of each individual can be accounted for
The Principle of Least Privilege
The principle of least privilege applies to Authorization in the AAA identity and access management model.