IV - Identity and Access Management Flashcards

1
Q

Principle of least privilege required

A

Grant lowest required access rights necessary to perform required duties.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Role-based access controls

A

Level of access is determined by a person’s role in the organization. Easy to maintain.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

user-based access controls

A

Access to systems is user-based and heavily personalized. More difficult to maintain.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Context-aware access control

A

Granular access control that could be based on current attributes like IP address, device security level, or location. Someone could have the right authorization (according to user-based ACLs) but isn’t on the right IP address.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Cross-enterprise authentication and authorization

A

Single sign-on (SSO)/SAML

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Federated Identity

A

A person’s identity is authenticated in a trusted, centralized service. Uses tokens (SSO).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Single-factor authentication

A

Only uses one form of authentication to log into an account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Multifactor authentication

A

Requires multiple forms of authentication to log in.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Something you know

A

Username and password

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Something you are

A

Biometrics (fingerprint, facial recognition)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Something you have

A

A token/key (e.g. a yubikey)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Where you are

A

Physical location. This is sometimes also considered part of “something you are.”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly