InterviewStack.io LogoInterviewStack.io

Identity, Authentication, and Access Management Questions

Designing and operating identity and access control systems. Covers authentication protocols and standards (OAuth, SAML, OIDC, MFA), authorization models (RBAC, ABAC), identity lifecycle and privilege management, IAM architecture and automation, and access control across cloud and on-premises environments. The 'who can do what' control plane, distinct from cryptographic key management.

HardTechnical
36 practiced

Design a secure break-glass process for emergency privileged access that minimizes risk of abuse. Include required approvals, ephemeral credential issuance, session brokering/recording, forced post-usage attestation, cryptographic one-time tokens, and integration with SSO and PAM while maintaining forensic-grade audit trails.

MediumTechnical
31 practiced

Explain AWS IAM policy evaluation order and components: identity policies, resource policies, permission boundaries, service control policies (SCPs), and session policies. Provide a concise debugging checklist you would use when a user or role is unexpectedly denied an action.

EasyTechnical
43 practiced

Explain the core concepts of Identity and Access Management (IAM) at a cloud provider: principals, roles/policies, groups, resource-based policies, and the principle of least privilege. As a Solutions Architect, outline a basic IAM strategy for a new client with 3 engineering teams and 1 finance team.

That is every published Identity, Authentication, and Access Management question for Site Reliability Engineer (SRE) so far. Browse the other topics in this category, or practice this one interactively.