Implementing Identity Management

Identity management refers to managing accounts and access to resources by these accounts. Accounts need to be managed through their lifetime. If a user leaves the company, the account should be disabled, and once it’s determined that the account is no longer needed, it should be deleted. Additionally, users may need different privileges as their job tasks change, and identity management addresses adding and removing privileges as needed.

Privileges include both rights and permissions. Rights are actions that an account can take on a system, such as backing up files, changing the time, or rebooting the computer. Permissions identify what a user can do with resources such as reading and writing to a file or printing ...

Get SSCP Systems Security Certified Practitioner All-in-One Exam Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.