
Explore identity governance and access controls basics, including Kerberos, single sign-on, multi-factor authentication, SAML, and LDAP, to secure cloud and Windows environments through governance and access models.
Explore the Kerberos authentication protocol and its three-headed architecture that uses symmetric keys, with the KDC, authentication server, and ticket granting server issuing TGTs and service tickets for mutual authentication.
Explore single sign-on, multi-factor authentication, federation, and evolving web-based and desktop SSO across devices, with SAML, OpenID Connect, JWTs, and adaptive authentication.
Enable single sign-on across trust boundaries by centralizing password management with the identity provider. Use saml assertions to authenticate at the service provider and deliver seamless access.
Learn LDAP browsing with Softerra LDAP Browser to connect to an app server on port 389, observe anonymous enumeration, and review schema and user data.
Explore core access control models, including the access control matrix, access control lists, capabilities, and role-based access control, focusing on file-based access and centralized versus local management.
Explore five key models: Bella Pedulla, Beba, Cartwell Wilson, noninterference, and Bruer Nash (Chinese Wall), focusing on confidentiality, integrity, and dynamic access controls.
Master identity governance across provisioning, role management, and lifecycle controls to automate access reviews and deprovisioning across on-prem and cloud resources.
Demonstrates hands-on provisioning with Oracle Identity Manager, auto provisioning new hires to Oracle Internet Directory and birthright access, with self-service dashboards, password reset, and entitlement verification.
Examine cloud-based security services, including pure play and embedded models, and how identity and access management as a service enables authentication, authorization, provisioning, encryption, and mobile device management.
Configure Windows AppLocker to control software installation and runtime via group policy. Create executable, Windows Installer, and script rules with default rule sets, trusted publishers, and digital signatures.
Examine securing the Windows client desktop via User Account Control and group policy, with Windows Defender, WSUS, and malware removal tools such as MSConfig and registry run keys.
Master identity and access concepts in this Security+ course, covering identity and access management technologies, Kerberos, single sign-on, federation, governance, provisioning with identity governance, cloud identity, and Windows app locker.
This course is for beginners and IT pros looking to get certified and land an entry level Cyber Security position paying upwards of six figures! There are currently over a million Cyber Security job openings global and demand is greatly outpacing supply which means more opportunity, job security and higher pay for you!
The Security+ exam covers six domains and this course focuses on the fifth domain which is the 'Identity and Access Management' domain.
Topics include:
There are several core Access Control Models that serve as standards for privilege management which are covered in the Security+ exam materials. Learn about trust and security models which serve as frameworks that help us to understand and incorporate best practices when designing and implementing secure systems.
You will learn the Kerberos Authentication protocol, why it’s used and how it’s implemented to secure client server computing environments. Understand Single-Sign-On and Multi-factor authentication and see how these technologies advance the mission of security and also enhance the end user experience.
Companies needed mechanism for SSO across trust boundaries. You will learn about SAML (Security Assertion Markup Language) implementations and architectures and how SAML supports identity federation. Identity governance encompasses all aspects of the identity and role management lifecycle. In this section of the course you will learn all about identity and role lifecycle management best practices.
Pass the 'Identity and Access Controls' section of the Security+ exam. Join me today!