Access and Identity Management
IAM, PAM, Zero Trust, SSO
Access and Identity Management ensures the right people have the right access to the right resources, and nothing more. It covers the identities, credentials, and policies that govern who can reach which systems, applications, and data.
Why Access and Identity Management matters
Stops credential abuse
Strong authentication and least privilege shrink the blast radius when a credential is phished or leaked.
Enables Zero Trust
Identity is the new perimeter: every request is verified before access is granted.
Eases compliance
Clear access governance maps directly to GDPR, HIPAA, and SOC 2 control requirements.
What you'll practice
Quizzes and spaced repetition keep these sharp, reinforcement not a replacement for deep study.
- Recall the three authentication factor types
- Recognize where SSO, MFA, and PAM each fit
- Tell authentication from authorization on sight
- Keep Zero Trust and least-privilege principles fresh
- Spot risky standing privilege and access creep
Topics covered
Access controlAuthenticationAuthorizationIdentity and Access Management (IAM)Privileged Access Management (PAM)Zero Trust ArchitecturePasswordless Authentication (e.g., biometrics, FIDO2)Single Sign-On (SSO)Directory Services (e.g., Active Directory)
A peek at the format
PreviewMultiple Choice
Which best describes the principle of least privilege?
AGrant every user admin rights for convenience
BGive users only the access they need to do their job
CRotate passwords every 30 days
DEncrypt all data at rest
This is a preview. Create an account to actually play.
Play for realRelated certifications
- (ISC)² CISSP
- Microsoft Identity and Access Administrator (SC-300)
- Okta Certified Professional
- CompTIA Security+