SSCP Systems Security Certified PractitionerAccess ControlsHard

A security auditor is reviewing an organization's access control policies and discovers that several administrators have been granted 'full control' over all critical production servers, regardless of their specific job function or the principle of least privilege. This situation represents a failure in which crucial Identity and Access Management (IAM) concept?

  1. AAccount Provisioning
  2. BIdentity Governance and Administration (IGA)
  3. CAccount Deprovisioning
  4. DPrivileged Access Management (PAM)
Show answer & explanation

Correct answer: D. Privileged Access Management (PAM)

Privileged Access Management (PAM) specifically focuses on managing, monitoring, and securing accounts with elevated permissions. The scenario describes a failure to properly manage or restrict such 'full control' accounts, indicating a PAM deficiency.

Why the other options are wrong

  • A. Account provisioning is about creating accounts and initial access, not managing ongoing elevated privileges.
  • B. IGA is a broader concept encompassing identity lifecycle management, access requests, and compliance, but PAM is the direct and specific concept addressing the management of 'full control' accounts.
  • C. Account deprovisioning is about removing access when it's no longer needed, which is not the primary issue here.

Privileged Access Management (PAM)

A comprehensive solution for managing, monitoring, and securing privileged accounts and their access to critical systems and data, ensuring adherence to the principle of least privilege.

  • Focuses on 'super-user' accounts (administrators, root, service accounts).
  • Includes password vaulting, session monitoring, and just-in-time access.
  • Crucial for reducing the attack surface and preventing insider threats.

Memory trick: PAM: Protect Admin Masters!

More Access Controls questions