ISSAP Domain 4: Section 2: Design access control management and lifecycle Course
46 minutes
Syllabus
Access control concepts and principles (e.g., discretionary/mandatory, segregation/Separation of Duties, least privilege)
Video - 00:14:00
Determine which access control concepts and principles are identified and required in the organization's security strategy.
Access control configurations (e.g., physical, logical, administrative)
Video - 00:06:00
Determine the current access control configurations being used for physical, logical and administrative access to the organization's systems and information.
Authorization process and workflow (e.g., governance, issuance, periodic review, revocation)
Video - 00:07:00
Determine the organization's current authorization processes and what workflows are currently being used.
Roles, rights and responsibilities related to system, application and data access control (e.g., groups, Digital Rights Management, trust relationships)
Video - 00:11:00
Work with the human resources department to determine the process for role provisioning, including rights and responsibilities.
Management of privileged accounts
Video - 00:04:00
Determine what additional requirements are in place for privileged accounts, both administrators and superusers.
Authorization (e.g., Single Sign-On, rule-based, role-based, attribute-based)
Video - 00:04:00
Determine what authorization mechanisms are in place and where the organization wants to be.
Unlock 7 days of free training
- 1,400+ hands-on courses and labs
- Certification practice exams
- Skill assessments
Plans & pricing
Infosec Skills Personal
$299 / year
- 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Custom certification practice exams (e.g., CISSP, Security+)
- Skill assessments
- Infosec peer community support
Infosec Skills Teams
$799 per license / year
- Team administration and reporting
- Dedicated client success manager
-
Single sign-on (SSO)
Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
-
Integrations via API
Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
- 190+ role-guided learning paths and assessments (e.g., Incident Response)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Create and assign custom learning paths
- Custom certification practice exams (e.g., CISSP, CISA)
- Optional upgrade: Guarantee team certification with live boot camps