PAM-CDE-RECERT Exam QuestionsBrowse all questions from this exam

PAM-CDE-RECERT Exam - Question 27


You are creating a Dual Control workflow for a team's safe.

Which safe permissions must you grant to the Approvers group?

Show Answer
Correct Answer: AC

In a Dual Control workflow, the Approvers group needs to have permission to see the list of accounts and to authorize account requests. The permission to list accounts allows approvers to view the accounts for which they can authorize requests, and the authorization permission allows them to approve or deny these access requests. Therefore, the permissions required are 'List accounts' and 'Authorize account request'.

Discussion

4 comments
Sign in to comment
NigilPOption: A
Sep 7, 2023

aOORIVER DO NOT NEED TO USE THE PASSWORD ONLY APPROVE WHICH CAN BE DONE IN pvwa

sent3xOption: A
Oct 29, 2023

The answer is A

dru0paOption: C
Mar 18, 2023

The system is now configured for dual control, and users who wish to retrieve accounts are required to request access confirmation from at least one authorized user. By default, requests are retained in the Safe for 30 days. Select the authorizations that the Safe member/group will have in the Safe. Specifically, select Authorize password requests; the Confirmation Level options appear. https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/13.0/en/Content/PASIMP/PVWA-Dual-Control.htm

144d6ddOption: A
Jun 24, 2024

A. List accounts, Authorize account request DR