Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is designing a privileged access management and lifecycle workflow for emergency Cloud Identity super administrator access to remediate critical identity federation and authentication outages.
The security architecture must satisfy the following governance and operational requirements:
Which strategy should the organization implement to manage this privileged access lifecycle?
Privileged Access Manager (PAM) is a Google Cloud security service designed to manage, approve, and audit just-in-time (JIT) temporary privilege elevations for sensitive cloud resources. For root-level identity management where Cloud Identity super administrator credentials must be accessed in emergency disaster recovery scenarios, this architecture pairs PAM with pre-provisioned breakglass accounts governed by strict administrative controls.
This solution provides defense-in-depth by integrating automated just-in-time privilege elevation for day-to-day operational escalations while maintaining securely segregated, dual-custody breakglass procedures for emergency recovery of primary Cloud Identity infrastructure.
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.