StudyToCert

All certifications / Security+ / Lessons

CompTIA Security+ SY0-701 · Domain 4: Security operations

MFA factors, PAM, just-in-time access

▶ Watch the overview video

Last reviewed September 25, 2026 · Leer en español

Passwords alone are easy to steal, guess or reuse. Multifactor authentication (MFA) requires two or more different types of evidence before granting access, so a stolen password is not enough. Privileged access management (PAM) adds extra protection to the most powerful accounts, such as domain administrators, root and cloud administrators, which attackers target because they unlock everything. Just-in-time (JIT) access reduces the time those privileges exist at all. Together they are among the most effective controls against account takeover and ransomware, and Security+ tests the details of each.

Free account

Keep reading for free

Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 8 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.

Sign up free Log in

Study Security+ for free
A week-by-week plan with every lesson, quizzes, checkpoint tests, a practice exam and hands-on labs.
Open the Security+ study plan