What is Privileged Access Management (PAM)?

D1 ยท General  ยท  CompTIA Security+ SY0-701
PAM (Privileged Access Management) is a security solution that secures, controls, monitors, and audits all privileged access to critical systems โ€” admin accounts, root access, service accounts, and API keys โ€” which have elevated permissions.

PAM capabilities: privileged account discovery, password vaulting (auto-rotate credentials), session recording (full audit trail), just-in-time access (temporary privilege elevation), least privilege enforcement.

Tools: CyberArk, BeyondTrust, Delinea.
Privileged accounts are the #1 target in breaches. PAM implements least privilege for admins โ€” no standing admin rights, time-limited access, all sessions recorded. Just-in-time (JIT) privileged access grants temporary admin rights only when needed and automatically revokes them. Critical for zero trust architecture.
โ† Back to Glossary Practice Questions โ†’