Identity and Access Management glossary

Explore the concepts used across Identity and Access Management, Identity Governance, Access Management, privileged access, authorization and identity security.

Definitions are organized to support search and navigation between related concepts.

Search for a term

Browse by letter

Filter by category

Glossary terms

25 terms· Page 1 of 2
  • Privileged access management

    Administrative Workstation

    An Administrative Workstation is a hardened workstation dedicated to privileged operations and isolated from standard user activity.

  • Privileged access management

    Bastion

    A Bastion is a controlled intermediary used to broker and monitor access to sensitive technical targets.

  • Privileged access management

    Domain Administrator Account

    A Domain Administrator Account is a highly privileged account with broad control over directory-managed systems and identity infrastructure.

  • Privileged access management

    Firefighter Access

    Firefighter Access is emergency privileged access granted temporarily to resolve urgent operational or security situations.

  • Privileged access management

    Information Correlation

    The practice of combining identity, network, endpoint, and session signals to improve security decisions.

  • Privileged access management

    Just-Enough Access

    Just-Enough Access is the practice of granting only the minimum privileged capability required for a precise task.

    JEA
  • Privileged access management

    Just-in-Time Access

    Just-in-Time Access is access that is granted only when needed and for a limited period rather than standing permanently.

    JIT
  • Privileged access management

    Keystroke Logging

    Keystroke Logging is the capture of command or keyboard input during a sensitive session for audit and forensic purposes.

  • Privileged access management

    Local Administrator Account

    A Local Administrator Account is a privileged account with administrative rights limited to a workstation or server instance.

  • Privileged access management

    Micro-Segmentation

    A deeper form of segmentation that controls access at a very granular workload or application level.

  • Privileged access management

    Privileged Access Management

    Privileged Access Management is the discipline of governing, controlling, and monitoring elevated access to sensitive systems and functions.

    PAM
  • Privileged access management

    Privileged Account

    A Privileged Account is an account whose rights are sufficient to cause major damage if misused or compromised.

  • Privileged access management

    Privileged Elevation

    Privileged Elevation is the temporary granting of higher-level access for a specific administrative or sensitive task.

  • Privileged access management

    Robot Account

    A Robot Account is a non-human account used by an automation or robot that interacts with applications in a human-like way.

  • Privileged access management

    Secret Management

    Secret Management is the discipline of storing, controlling, distributing, and rotating sensitive credentials and secrets securely.

  • Privileged access management

    Secret Rotation

    Secret Rotation is the periodic or event-driven replacement of passwords, keys, or other secrets to reduce exposure.

  • Privileged access management

    Secret Vault

    A Secret Vault is a secured repository used to store and control access to sensitive secrets such as passwords, keys, and credentials.

  • Privileged access management

    Session Recording

    Session Recording is the capture of privileged session activity so that actions can be reviewed and investigated later.

  • Privileged access management

    Surveillance Principle

    A principle stating that access must remain under active observation and may be challenged or interrupted dynamically.

  • Privileged access management

    Team Account

    A Team Account is a shared account used by multiple members of a team rather than by a single identified person.

  • Privileged access management

    Tiering

    Tiering is the separation of administrative scopes into different sensitivity levels so that high-risk assets are isolated from lower-trust environments.

  • Privileged access management

    Traffic Segmentation

    The isolation of network flows so that access paths are restricted to what is actually required.

  • Privileged access management

    Unified Security Surface

    A Unified Security Surface is the principle of treating IAG, Access Management, and PAM as one interconnected security system rather than separate silos.