Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CompTIA CNX-001 Exam - Topic 3 Question 24 Discussion

After a company migrated all services to the cloud, the security auditor discovers many users have administrator roles on different services. The company needs a solution that:Protects the services on the cloud.Limits access to administrative roles.Creates a policy to approve requests for administrative roles on critical services within a limited time.Forces password rotation for administrative roles.Audits usage of administrative roles.Which of the following is the best way to meet the company's requirements?
A) Privileged access management
B) Session-based token
C) Conditional access
D) Access control list

CompTIA CNX-001 Exam - Topic 3 Question 24 Discussion

Actual exam question for CompTIA's CNX-001 exam
Question #: 24
Topic #: 3
[All CNX-001 Questions]

After a company migrated all services to the cloud, the security auditor discovers many users have administrator roles on different services. The company needs a solution that:

Protects the services on the cloud.

Limits access to administrative roles.

Creates a policy to approve requests for administrative roles on critical services within a limited time.

Forces password rotation for administrative roles.

Audits usage of administrative roles.

Which of the following is the best way to meet the company's requirements?

Show Suggested Answer Hide Answer
Suggested Answer: A

A Privileged Access Management (PAM) solution provides just-in-time elevation to administrative roles, enforces approval workflows with time-bound access, requires credential rotation, and offers comprehensive auditing of all privileged sessions, fully meeting the company's requirements.


Contribute your Thoughts:

0/2000 characters
Tina
3 days ago
Access control lists are outdated for this kind of setup, right?
upvoted 0 times
...
Stanford
8 days ago
Definitely need to limit admin roles, too many users have too much power!
upvoted 0 times
...
Amber
13 days ago
Wait, how can we trust users to rotate passwords regularly?
upvoted 0 times
...
Stefania
19 days ago
I disagree, conditional access could be more effective.
upvoted 0 times
...
Tawanna
24 days ago
Sounds like privileged access management is the way to go!
upvoted 0 times
...
Carlton
29 days ago
I feel like access control lists are more about network permissions rather than user roles. I think A is definitely the best option, but I wish I had more clarity on the other choices.
upvoted 0 times
...
Ernie
1 month ago
I’m a bit confused about the best choice. Conditional access sounds like it could help with limiting access, but I’m not sure it covers all the requirements.
upvoted 0 times
...
Delisa
1 month ago
I remember discussing privileged access management in class, and it seems to fit all the requirements. But what about session-based tokens? Could they be relevant here?
upvoted 0 times
...
Isadora
1 month ago
I think this question is similar to one we practiced on managing user permissions in the cloud. I’m leaning towards A, but I’m not entirely sure.
upvoted 0 times
...

Save Cancel