# ICAM and MFA Fundamentals (Self-Paced)

Canonical URL: <https://www.nobledesktop.com/classes/icam-and-mfa-fundamentals-self-paced>

## Overview

Identity, Credential, and Access Management, built for people who need to understand the identity layer without becoming identity engineers themselves. The course runs the full chain in order: identity, proofing, authentication and MFA, authorization, federation, and the access decision itself.

Lead with the MFA material, because that's the part everyone is actually asking about. Most identity training stops at "turn on MFA"; this one explains which MFA and why. Multifactor is broken apart rather than treated as a single checkbox: authenticator types are separated, the assurance levels behind them are explained, and the attacks aimed directly at MFA are covered in detail — phishing, MFA fatigue, credential theft, and adversary-in-the-middle. You'll come away able to say why a push notification and a hardware security key are not equivalent controls. The final module is applied: short scenario exercises framed as "Should this user get access?" require you to pull identity, credential, authentication, and authorization into a single decision, the way a Zero Trust access decision is actually made. The course works with the IAL, AAL, and FAL assurance-level model, PIV and other hardware-backed credentials, Zero Trust access decisions, RBAC and ABAC, and introductory SAML, OAuth, and OpenID Connect.

## What you'll learn

- Distinguish identity, account, credential, and authenticator, and explain how identity, authentication, authorization, and access relate to each other
- Explain identity proofing and the joiner, mover, and leaver lifecycle, including provisioning, revocation, and termination
- Apply the assurance-level model, IAL, AAL, and FAL, to real access situations
- Compare common MFA methods and explain why stronger methods provide greater assurance
- Recognize attacks aimed at MFA, including phishing, MFA fatigue, credential theft, and adversary-in-the-middle
- Apply least privilege, need-to-know, role-based access control, and attribute-based access control to authorization decisions
- Explain federation and single sign-on, including identity providers, relying parties, credentials, and assertions
- Work a full access transaction end to end and judge whether a given user should be granted access

## Prerequisites

Basic cybersecurity knowledge.

## Pricing

**Tuition:** $799
