CISSP Practice Question (Identity and Access Management (IAM) - Hard):
In a hybrid cloud environment, a company is implementing privileged access management (PAM) to secure critical systems. The company's security policy mandates the use of identity federation for single sign-on across on-premises and cloud resources. However, during the implementation phase, the security team faces a challenge in ensuring secure authentication and authorization. Which of the following strategies BEST addresses the issue?
Options:
A. Implementing a separate PAM solution for on-premises and cloud resources
B. Enforcing multi-factor authentication (MFA) for privileged users only
C. Utilizing Security Assertion Markup Language (SAML) for identity federation
D. Configuring role-based access control (RBAC) with least privilege for all users
2
11 comments
Vincent Primiani
7
CISSP Practice Question (Identity and Access Management (IAM) - Hard):
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by