IAM Solutions Flashcards
Identity Access Management
Systems/processes used to manage information into an organization to ensure that right user has correct access
Account Provisioning
Process of creating and removing (deprovisioning) new users’ accounts, assigning permissions, and providing access
Identity Proofing
Verify users’ identity
Interoperability
Ability of different systems/devices to work together
Multi-Factor Authentication (MFA)
Systems that require more than one form of authentication through a list of defined categories
Multi-Factor Authentication Knowledge Based
(password, PIN)
Multi-Factor Authentication Possession Based
(key fob, smart card, software token)
Multi-Factor Authentication Inherence Based
(face scan, thumbprint)
Multi-Factor Authentication Location Based
(IP)
Multi-Factor Authentication Behavior Based
Patterns such as keystrokes and mouse movement
Single Factor Authentication
Uses one factor for authentication
Two-factor authentication
Uses two factors
Password security
Measures the password’s ability to repel guessing/brute force attacks
Password managers
Store, generate, and autofill passwords for security
Passwordless authentication
Improves security and usability than traditional methods
Password authentication types
(biometric, hardware tokens, one-time password, Magic Links, and Passkeys)
Hardware tokens
Physical devices like a security key that generates a short-duration login code
Magic Link
Email link that automatically logs the user into a web site
Password attack types
(Brute force, dictionary attack, password-spraying, and hybrid attacks)
Dictionary attacks
Using a list of commonly used passwords and trying them all
Password spraying
Form a brute force that involves trying a small number of commonly used passwords against a large number of usernames
Hybrid attack
Blends brute and dictionary text by using common passes with variations such as adding numbers and special characters
Single Sign-On (SSO)
Authentication process that allows a user to access multiple applications and websites by logging in only once using a single set of credentials
Identity Provider (IDP)
System that (creates, manages, maintains) identity information for principals while providing authentication services to apps that use it within their network; Microsoft Entra