Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)Cloud SecurityMedium
A cloud administrator is configuring access to a shared object storage bucket containing sensitive customer data. They want to ensure that only authorized services and users can access specific files, and that access is logged for auditing purposes. Which security concept is most important for defining these granular permissions?
- AIdentity and Access Management (IAM)
- BScalability
- CResilience
- DElasticity
Show answer & explanationAnswer & explanation
Correct answer: A. Identity and Access Management (IAM)
Identity and Access Management (IAM) is the foundational security concept for defining granular permissions for users and services, controlling who can access what resources and under what conditions, and logging those actions.
Why the other options are wrong
- B. Scalability refers to the ability to handle increased workload, unrelated to access control.
- C. Resilience refers to the ability to recover from failures, unrelated to access control.
- D. Elasticity refers to the ability to automatically scale resources up or down, unrelated to access control.
Identity and Access Management (IAM)
A framework of policies and technologies that enables an organization to manage digital identities and control user access to resources, ensuring only authorized individuals and services can perform specific actions.
- Defines who can authenticate and what they are authorized to do.
- Uses policies, roles, and groups to grant granular permissions.
- Crucial for enforcing the Principle of Least Privilege.
Memory trick: IAM is the 'gatekeeper' and 'rulebook' for all cloud resources.