StudyToCert

All certifications / CISSP / Lessons

ISC2 CISSP 2024 outline · Domain 5: Identity & access management

Just-in-time access and privileged access management

▶ Watch the overview video

Last reviewed September 30, 2026 · Leer en español

Privileged accounts, such as domain administrators, root, database administrators, cloud owners and service accounts with broad rights, are the keys attackers want most. With them an intruder can disable defenses, create backdoor accounts, read any data and erase evidence. Privileged access management (PAM) is the set of processes and tools that discovers, secures, limits and monitors these accounts. Just-in-time access is one of its most effective techniques. PAM matters to auditors as well as defenders, because regulations and frameworks commonly require evidence that privileged use is approved, limited and reviewed.

Free account

Keep reading for free

Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.

Sign up free Log in

Study CISSP for free
A week-by-week plan with every lesson, quizzes, checkpoint tests, a practice exam and hands-on labs.
Open the CISSP study plan