Apr 25, 2024  
2019-2020 Course Catalog 
    
2019-2020 Course Catalog [ARCHIVED CATALOG]

Add to Portfolio (opens a new window)

CVF 1073 - Identity Security and Access Management I

Credits: 3
Hours/Week:
Course Description: This course provides a fundamental and medium-level overview of the field of “Identity Security and Access Management (IAM)” and related security components to enable effective design and implementation of a secured IAM architecture.
Hands-on lab activities include demonstration or use of Advanced Threat Analytics (ATA), Identity as a service (IDaaS), SaaS-based IAM offerings, SSO using SAML or OIDC, Identity Access Governance (IGA), LDAP in *nix/Windows/Mac, Intelligence: Intelligence: Identity access log monitoring and reporting, User behaviors analytics.
MnTC Goals
None

Prerequisite(s): CVF 1083  with a grade of C or higher OR instructor consent.
Corequisite(s): None
Recommendation: CVF 1071   with a grade of C or higher.

Major Content
1. Managing Identities in a Digital WorldIdentity

  1. Identity and its theft
    1. Eliminating vulnerabilities in identification and authentication processes
    2. Compromising multiple identities
    3. Exploiting Object ID OID identities
  2. Ensuring strong authentication
    1. Enforcing authentication with biometrics
    2. Requiring multifactor authentication with smart cards
    3. Migrating to virtual smart cards and Trusted Platform Module TPM
  3. Implementing Single Sign-On (SSO)
    1. Interoperating via open industry standards, federated logon and claims
    2. Applying Kerberos identities in a domain
  4. Surveying IdM solutions
    1. Making identities portable with Secure Tokens
    2. On-premises and cloud-based identity management

2. Synchronizing Identities

  1. Discovering identity stores
    1. Exploring identities in Kerberos tickets and AD attributes
    2. Identifying identities in SQL databases
  2. Demystifying MIM 2016
    1. Importing identities from Connected Data Source CDS into Connector Space CS
    2. Synchronizing identities into Metaverse MV
    3. Managing identities and rules with the SharePoint MIM Portal

3. Implementing Identities in a PKI

  1. Inside PKI X.509 v3 certificates
    1. Expiring identities with certificate lifetimes
    2. Verifying identities with Subject Alternative Name
    3. Binding identities to certificates
  2. Establishing trust via certificates
    1. Validating trust with digital signatures
    2. Creating entity trust by importing a root CA
    3. Distributing trust to subordinate CAs
    4. Flowing trust with domain Group Policy Object GPO

Learning Outcomes
At the end of this course, students will be able to:

  1. explain various challenges associated with identity security and access management.
  2. discuss the fundamental concepts and the importance of Authorization, Authentication, Administration and Audit to Identity Security and Access Management.
  3. explain importance of single sign on and various technology and protocols needed to support Access Management.
  4. design, Install and Configure PKI solutions to manage trust between Relying Parties (RPs) and Identity Providers (IdPs).
  5. explain Microsoft Identity Manager (MIM).
  6. synchronize identities store among disparate authentication stores with 3rd party.

Competency 1 (1-6)
None
Competency 2 (7-10)
None


Courses and Registration



Add to Portfolio (opens a new window)