A penetration test has demonstrated that domain administrator accounts were vulnerable to pass-the-hash attacks. Which of the following would have been the best strategy to prevent the threat actor from using domain administrator accounts?
A.
Audit each domain administrator account weekly for password compliance.
B.
Implement a privileged access management solution.
C.
Create IDS policies to monitor domain controller access.
D.
Use Group Policy to enforce password expiration.
Privileged access management (PAM) refers to policies, procedures, and technical
controls to prevent compromise of privileged accounts. These controls identify and
document privileged accounts, giving visibility into their use, and managing the
credentials used to access them.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
iliecomptia
2 weeks, 5 days ago