CompTIA Security+ (SY0-601) Cert Prep: 4 Identity and Access Management Design and Implementation
1h 43mIntermediate2020-08-10
Authors

Mike Chapple
Teaching Professor at the University of Notre Dame
Course details
At a basic level, organizations must be able to grant access to legitimate users—and block requests from those who lack the right permissions—in order to operate safely and securely. As a security professional, you're charged with creating and implementing the identity and access management systems that make this happen. In this course, the fourth installment in the CompTIA Security+ (SY0-601) Cert Prep series, explore the world of identification, authentication, and authorization as you prepare for the Security+ exam. Instructor Mike Chapple covers key authentication concepts, including multifactor authentication, single sign-on, and federation. He also goes over mandatory access controls, discretionary access controls, the basic principles of account and privilege management, and more.
Skills covered
Identity and Access ManagementCybersecurityCert Prep
Concepts
0. Introduction
- 01 - Identity and access management
- 02 - What you need to know
- 03 - Study resources
1. Identification
- 04 - Identification, authentication, authorization, and accounting
- 05 - Usernames and access cards
- 06 - Biometrics
2. Authentication
- 07 - Authentication factors
- 08 - Multifactor authentication
- 09 - Something you have
- 10 - Password authentication protocols
- 11 - Single sign-on and federation
- 12 - RADIUS and TACACS
- 13 - Kerberos and LDAP
- 14 - SAML
- 15 - OAuth and OpenID Connect
- 16 - Certificate-based authentication
3. Authorization
- 17 - Understanding authorization
- 18 - Mandatory access controls
- 19 - Discretionary access controls
- 20 - Access control lists
- 21 - Advanced authorization concepts
- 22 - Database access control
4. Account Management
- 23 - Understanding account and privilege management
- 24 - Account types
- 25 - Account policies
- 26 - Password policy
- 27 - Managing roles
- 28 - Account monitoring
- 29 - Privileged access management
- 30 - Provisioning and deprovisioning
Conclusion
- 31 - Continuing your studies