nerdexam
CyberArk

ACCESS-DEF · Question #45

Cindy just joined a company's IT Audit Department and needs CyberArk Identity access to perform her daily job requirement? Which administrative right(s) should she be assigned to match her job…

The correct answer is A. Everybody + IT Admin + Auditor. Option A is correct because Cindy's role as an IT Auditor requires all three rights: Everybody (baseline access granted to all users), IT Admin (to perform IT administrative functions), and Auditor (to access audit logs, reports, and compliance data specific to her department's…

Authentication and Authorization

Question

Cindy just joined a company's IT Audit Department and needs CyberArk Identity access to perform her daily job requirement? Which administrative right(s) should she be assigned to match her job requirement?

Options

  • AEverybody + IT Admin + Auditor
  • BEverybody + IT Admin
  • CEverybody
  • DEverybody + Auditor

How the community answered

(31 responses)
  • A
    77% (24)
  • B
    13% (4)
  • C
    3% (1)
  • D
    6% (2)

Explanation

Option A is correct because Cindy's role as an IT Auditor requires all three rights: Everybody (baseline access granted to all users), IT Admin (to perform IT administrative functions), and Auditor (to access audit logs, reports, and compliance data specific to her department's responsibilities). Option B fails because it omits the Auditor role, leaving her unable to access the audit-specific features her job demands. Option C provides only the base-level access every user gets, with no administrative or audit capabilities. Option D drops IT Admin, meaning she could audit but couldn't perform the IT administrative tasks her daily job requires.

Memory tip: Break down her title - "IT Audit" Department. She needs one role for each word: IT → IT Admin, Audit → Auditor, and Everybody as the universal baseline. If her role name has two parts, her access needs two roles plus Everybody.

Topics

#Role-based access control#Administrative rights assignment#CyberArk Identity roles#Job function-based access

Community Discussion

No community discussion yet for this question.

Full ACCESS-DEF Practice