โ† All CAD Flashcard Decks

Privileged Access Management Concepts Flashcards

7 cards from real CAD practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Privileged Access Management Concepts flashcards as text
  1. What is 'just-in-time (JIT) privileged access' and what security benefit does it provide?

    Answer: Provisioning elevated privileges only for the duration of a specific task, then revoking them immediately after

    JIT access eliminates standing privileges by granting elevated rights on demand and revoking them after the task, dramatically reducing the attack window.

  2. Which attack technique involves using a valid Kerberos ticket to impersonate a privileged user without knowing the password?

    Answer: Pass-the-ticket

    Pass-the-ticket attacks use stolen Kerberos tickets to authenticate as another user without requiring the actual password.

  3. In CyberArk, what is the role of the 'Master Policy' in PVWA?

    Answer: It sets organization-wide default behaviors for account management that individual platform policies can override or inherit

    The Master Policy provides a global baseline of account management rules, and platform-level or Safe-level settings can override specific parameters as needed.

  4. What is a 'Golden Ticket' attack, and which privileged account does it target?

    Answer: A Kerberos attack that forges TGTs by compromising the KRBTGT account hash, granting domain-wide access

    A Golden Ticket attack uses the compromised KRBTGT account hash to forge Kerberos Ticket Granting Tickets (TGTs), providing persistent domain-wide access.

  5. What does CyberArk's Privileged Threat Analytics (PTA) primarily do?

    Answer: Detects anomalous privileged account behavior and generates alerts for potential threats

    PTA analyzes privileged account activity against behavioral baselines and raises security alerts when anomalies suggest a potential compromise or insider threat.

  6. What is 'privilege creep' and why is it a security concern?

    Answer: The gradual accumulation of access rights beyond what a user currently needs, often due to role changes without permission reviews

    Privilege creep occurs when users accumulate permissions over time through role changes without proper access reviews, violating the principle of least privilege.

  7. In CyberArk PAM, what is the purpose of 'exclusive access' for a privileged account?

    Answer: Allowing only one user to check out and use an account at a time, preventing concurrent shared access

    Exclusive access ensures an account is checked out to only one user at a time, providing clear accountability and preventing concurrent shared use.