Which THREE of the following are components of a Privileged Access Management (PAM) solution?
Session recording is a critical component of Privileged Access Management (PAM) that captures and archives all activities performed during a privileged session. This includes keystrokes, mouse movements, and screen content, providing an immutable audit trail. Such recordings are invaluable for forensic analysis, compliance auditing, and identifying unauthorized or suspicious actions by privileged users, enhancing accountability and security posture.
Why this answer
Session recording (C) is a core PAM component because it captures and audits privileged sessions (e.g., SSH, RDP) for accountability and forensic review. Just-in-time access (D) is a PAM capability that grants elevated privileges only when needed and for a limited time, reducing standing access. Password vaulting (E) is central to PAM, as it securely stores, rotates, and checks out privileged credentials.
User self-service password reset (A) and single sign-on for web applications (B) are identity and access management (IAM) features, not PAM-specific components.
Exam trap
The trap is that SSO and self-service password reset sound like 'access management' and get lumped in with PAM — remember PAM is specifically about privileged accounts, vaulting, JIT elevation, and session auditing.