โ† All CAD Flashcard Decks

PAM Basics Flashcards

7 cards from real CAD practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 PAM Basics flashcards as text
  1. Which CyberArk component is responsible for rotating credentials automatically after they are checked in?

    Answer: Central Policy Manager (CPM)

    The Central Policy Manager (CPM) automatically rotates credentials based on configured policies after they are checked in.

  2. In CyberArk, what term describes an account whose credentials are stored and managed inside the Digital Vault?

    Answer: Onboarded account

    An onboarded account is one whose credentials have been brought under CyberArk Vault management.

  3. Which PAM concept ensures that each privileged session is recorded and can be audited later?

    Answer: Session monitoring

    Session monitoring records privileged sessions so security teams can review, audit, or replay them.

  4. What is 'dual control' in the context of CyberArk PAM?

    Answer: Requiring a second approver before a password is retrieved

    Dual control requires a second authorized user to approve a password retrieval request before it is granted.

  5. Which of the following best describes 'standing privileges' in PAM terminology?

    Answer: Always-on privileged access that persists even when not needed

    Standing privileges are persistent, always-active privileged accounts that pose a higher risk because they are available even when not in use.

  6. Which CyberArk feature allows applications to retrieve credentials without embedding them in code?

    Answer: Application Identity Manager (AIM) / Credential Provider

    AIM / Credential Provider lets applications request credentials from the Vault at runtime, eliminating hardcoded passwords.

  7. In CyberArk's Vault, what is a 'Safe' used for?

    Answer: A logical container for storing and controlling access to privileged accounts

    A Safe is a logical vault partition that holds accounts and files, with its own access controls and audit trail.