Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)Cloud SecurityMedium
A multinational corporation is adopting a hybrid cloud strategy, utilizing both their on-premises Active Directory and cloud-based applications. They want to ensure that employees can use their existing corporate credentials to access cloud applications without re-entering them. Which security concept is crucial for achieving this seamless access?
- AFederated Identity Management
- BCloud Security Posture Management (CSPM)
- CRole-Based Access Control (RBAC)
- DMulti-Factor Authentication (MFA)
Show answer & explanationAnswer & explanation
Correct answer: A. Federated Identity Management
Federated Identity Management allows users to authenticate once with a single identity provider (like on-premises Active Directory) and gain access to multiple services and applications, including those in the cloud, without needing separate credentials.
Why the other options are wrong
- B. CSPM monitors cloud configurations for security posture and compliance, unrelated to identity federation.
- C. RBAC defines permissions based on roles, but doesn't facilitate credential reuse across disparate systems.
- D. MFA strengthens authentication but doesn't enable single sign-on across different identity providers.
Federated Identity Management
A system that allows users to use a single set of login credentials to access multiple applications and services across different security domains, often involving an on-premises identity provider and cloud services through a trusted relationship.
- Enables Single Sign-On (SSO).
- Relies on trusted relationships between identity providers.
- Commonly uses protocols like SAML or OIDC.
Memory trick: Federated Identity is like a trusted 'passport' for all your cloud travels.