Microsoft Security, Compliance, and Identity Fundamentals (SC-900)Describe the concepts of security, compliance, and identityEasy
A small business uses several cloud applications, each requiring separate login credentials. Employees are finding this cumbersome and often forget passwords, leading to security risks. Which identity concept would best address these issues by simplifying access while maintaining security?
- AConditional Access
- BMulti-Factor Authentication (MFA)
- CSingle Sign-On (SSO)
- DRole-Based Access Control (RBAC)
Show answer & explanationAnswer & explanation
Correct answer: C. Single Sign-On (SSO)
Single Sign-On (SSO) allows users to log in once with a single set of credentials and gain access to multiple applications, directly addressing the issue of managing multiple logins and forgotten passwords.
Why the other options are wrong
- A. Conditional Access defines access based on conditions, not simplifying multiple logins.
- B. MFA adds extra security layers but doesn't reduce the number of logins.
- D. RBAC manages permissions within an application, not across multiple applications for login.
Single Sign-On (SSO)
An authentication scheme that allows a user to log in with a single ID and password to gain access to multiple related, yet independent, software systems.
- Enhances user experience by reducing password fatigue.
- Improves security by reducing the attack surface for password-related incidents.
- Commonly implemented using protocols like SAML or OpenID Connect.
Memory trick: One Key, Many Locks