CyberArk Trustee – Privileged Access Management — Question 2
If a user is a member of more than one group that has authorizations on a safe, by default that user is granted____________________.
Answer options
- A. the vault will not allow this situation to occur.
- B. only those permissions that exist on the group added to the safe first.
- C. only those permissions that exist in all groups to which the user belongs.
- D. the cumulative permissions of all the groups to which that user belongs.
Correct answer: D
Explanation
The correct answer is D because a user inherits the combined permissions from all groups they are a part of, allowing for a broader access level. Option A is incorrect as vaults do not prevent multiple group memberships. Option B is wrong because it implies a restrictive access based only on the first group, and Option C is misleading as it suggests permissions are limited to those shared by all groups, which is not the case.