Passwords alone are easy to steal, guess or reuse. Multifactor authentication (MFA) requires two or more different types of evidence before granting access, so a stolen password is not enough. Privileged access management (PAM) adds extra protection to the most powerful accounts, such as domain administrators, root and cloud administrators, which attackers target because they unlock everything. Just-in-time (JIT) access reduces the time those privileges exist at all. Together they are among the most effective controls against account takeover and ransomware, and Security+ tests the details of each.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 8 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.