Choose your language
Identity and Access Management (IAM) Course
+400,000 professionals on the platform
Exclusive for businesses

Identity and Access Management (IAM) Course

Master every layer of Identity and Access Management — from directory services and authentication protocols to Zero Trust strategy and privileged access controls. This comprehensive course equips security professionals with the technical depth and governance frameworks needed to protect enterprise identities, satisfy auditors, and lead IAM programmes with confidence.

Dedika for students

What your team will master:

  • Design IAM architectures that enforce least privilege across hybrid and multi-cloud environments.

  • Implement phishing-resistant MFA, passwordless flows, and risk-based adaptive authentication controls.

  • Configure federated SSO using SAML 2.0, OAuth 2.0, and OpenID Connect protocols.

  • Build a privileged access management programme with vaulting, just-in-time elevation, and session recording.

  • Automate identity lifecycle provisioning and deprovisioning using SCIM and governance workflows.

  • Produce audit-ready compliance evidence and map IAM controls to major regulatory frameworks.

How your team learns practically Identity and Access Management (IAM) Course

How your team practises Identity and Access Management (IAM) Course

Professionals from these companies study at Dedika

ActemiumFR
Nunner LogisticsNL
GT Constructora GeotécnicaCR
Sydel StarBR
Metrô de São PauloBR
Aguas AndinasCL
DSMIN
MeridianbetRS
CDHCN

Course content

8 Chapters • 35 LessonsDuration between 4 and 360 hours (you decide)

Chapter 1See details

Foundations of Identity and Access Management

  • Lesson 1 • Core IAM Concepts and Terminology

    Introduces essential vocabulary: principals, credentials, authentication, and authorization. Provides a shared language used throughout the course.

  • Lesson 2 • Regulatory and Compliance Context

    Surveys how data protection, privacy, and audit regulations shape IAM requirements. Enables practitioners to align IAM controls with compliance obligations.

  • Lesson 3 • What IAM Is and Why It Matters

    Defines IAM and its position within enterprise security strategy. Connects identity governance to risk reduction and regulatory compliance.

  • Lesson 4 • IAM Architecture Overview

    Maps the major components of an IAM ecosystem and their interactions. Sets the structural context for all subsequent technical chapters.

Chapter 2See details

Authentication Methods and Credential Management

  • Lesson 1 • Passwordless and Continuous Authentication

    Introduces passwordless flows and behavioural authentication signals. Positions these approaches as the evolution beyond static credentials.

  • Lesson 2 • Multi-Factor Authentication Design

    Explains MFA architectures, enrolment flows, and fallback mechanisms. Connects MFA design to phishing resistance and account takeover prevention.

  • Lesson 3 • Authentication Factors and Assurance Levels

    Covers knowledge, possession, and inherence factors and their assurance levels. Grounds factor selection in risk-based decision-making.

  • Lesson 4 • Password Policies and Secrets Management

    Defines evidence-based password policies and secure storage techniques. Addresses both human credentials and machine secrets.

Chapter 3See details

Directory Services and Identity Stores

  • Lesson 1 • Directory Service Fundamentals

    Explains directory structure, schemas, and the LDAP protocol. Provides the technical foundation for all identity store operations.

  • Lesson 2 • Cloud and Hybrid Identity Stores

    Examines cloud-native directories and hybrid synchronisation architectures. Connects on-premises identity data to cloud services securely.

  • Lesson 3 • Active Directory Architecture and Design

    Covers AD forests, domains, trusts, and organisational units. Teaches design decisions that affect security and manageability.

  • Lesson 4 • Identity Data Quality and Governance

    Addresses authoritative sources, data quality rules, and identity reconciliation. Ensures directory data remains accurate and trustworthy.

Chapter 4See details

Authorization Models and Access Control

  • Lesson 1 • Policy-Based and Dynamic Authorization

    Covers XACML, OPA, and context-aware policy engines for fine-grained access. Enables adaptive authorization based on real-time attributes.

  • Lesson 2 • Role Engineering and Role Management

    Teaches top-down and bottom-up role mining, role hierarchies, and lifecycle. Connects role design to operational efficiency and audit readiness.

  • Lesson 3 • Access Control Model Fundamentals

    Compares DAC, MAC, RBAC, and ABAC models with their trade-offs. Provides the conceptual basis for all authorization design decisions.

  • Lesson 4 • Entitlement Management and Access Reviews

    Explains entitlement catalogues, access request workflows, and periodic reviews. Operationalizes least privilege through continuous access governance.

Chapter 5See details

Federated Identity and Single Sign-On

  • Lesson 1 • Federation Concepts and Trust Models

    Defines identity federation, trust anchors, and circle-of-trust models. Establishes the conceptual framework before protocol-level details.

  • Lesson 2 • OAuth 2.0 and OpenID Connect

    Explains OAuth 2.0 grant types and OIDC identity layer for modern apps. Connects token-based flows to API security and mobile authentication.

  • Lesson 3 • SAML 2.0 Architecture and Flows

    Covers SAML assertions, bindings, and SSO and SLO profiles in depth. Enables practitioners to configure and debug SAML integrations.

  • Lesson 4 • SSO Implementation and Session Management

    Addresses SSO deployment patterns, session lifetime, and logout propagation. Balances user convenience with session security controls.

Chapter 6See details

Privileged Access Management

  • Lesson 1 • Privileged Session Monitoring and Recording

    Covers session proxy recording, keystroke logging, and anomaly alerting. Provides forensic evidence and deters misuse of privileged access.

  • Lesson 2 • Privileged Access Workstations and Tiering

    Covers tiered administration models and dedicated privileged workstations. Isolates administrative tasks from general-purpose computing environments.

  • Lesson 3 • Privileged Account Risk and Taxonomy

    Classifies privileged account types and their associated attack vectors. Motivates PAM investment with concrete threat scenarios.

  • Lesson 4 • Privileged Account Vaulting and Rotation

    Explains password vaulting, check-out workflows, and automated rotation. Eliminates standing credentials and enforces accountability for privileged use.

  • Lesson 5 • Just-in-Time and Zero Standing Privilege

    Introduces JIT provisioning and ephemeral privilege elevation models. Minimizes the attack surface by eliminating persistent privileged accounts.

Chapter 7See details

Identity Governance and Administration

  • Lesson 1 • Automated Provisioning and SCIM

    Explains SCIM protocol, connector frameworks, and provisioning orchestration. Enables scalable, error-free account management across heterogeneous systems.

  • Lesson 2 • Identity Analytics and Risk Scoring

    Applies analytics to detect toxic combinations, outliers, and risky entitlements. Shifts governance from periodic reviews to continuous risk-based monitoring.

  • Lesson 3 • Access Request and Approval Governance

    Designs self-service access request portals and multi-stage approval workflows. Balances agility with policy enforcement and audit accountability.

  • Lesson 4 • Identity Lifecycle Management

    Covers the full joiner-mover-leaver lifecycle and its automation requirements. Connects HR events to timely provisioning and deprovisioning actions.

  • Lesson 5 • Access Certification and Compliance Reporting

    Covers campaign design, reviewer workflows, and remediation tracking for certifications. Produces audit-ready evidence of access governance.

Chapter 8See details

Zero Trust and Advanced IAM Strategy

  • Lesson 1 • Emerging Trends in IAM

    Surveys decentralised identity, AI-driven governance, and quantum-safe authentication. Prepares practitioners to anticipate and plan for future IAM shifts.

  • Lesson 2 • Adaptive and Risk-Based Authentication

    Covers risk engines, signal aggregation, and step-up authentication triggers. Enables dynamic access decisions based on real-time context.

  • Lesson 3 • IAM Programme Metrics and Maturity

    Defines KPIs, maturity models, and roadmap planning for IAM programmes. Enables practitioners to measure progress and justify investment.

  • Lesson 4 • IAM for Cloud and Multi-Cloud Environments

    Addresses cloud IAM primitives, workload identity, and cross-cloud governance. Extends enterprise IAM controls into dynamic cloud infrastructure.

  • Lesson 5 • Zero Trust Architecture Principles

    Defines Zero Trust tenets and their implications for identity as the control plane. Reframes perimeter-based thinking into identity-centric security.

Certification

Your valid completion certificate

This course is for you:

  • IT administrators: ready to specialise in enterprise identity security programmes.

  • Cybersecurity analysts: looking to shift focus toward identity-centric threat defence.

  • System engineers: managing user accounts and wanting deeper governance expertise.

  • Compliance officers: needing technical fluency to evaluate and oversee IAM controls.

  • Career changers: entering security from networking, helpdesk, or sysadmin backgrounds.

  • Security architects: expanding their practice to include Zero Trust identity strategy.

Related Courses

FAQ

Who is Dedika?

Is the certificate valid in Kenya?

Are the courses free?

What is the course workload?

What are the courses like?

How do the courses work?

What is the duration of the courses?

What is the cost or price of the courses?

What is an EAD or online course and how does it work?

PDF Course