ExpertDistinguishedSecurity, Privacy & Multi-Tenancy75 minutesPro answer

SDV-047

Design an abuse-resistant privileged admin plane for global operations

Balance emergency speed with least privilege, just-in-time access, dual control, command safety, tenant scope, and compromise containment.

SecurityAuditabilityControl PlaneIncident Response

Interview prompt

Problem context

Global support and SRE teams need to inspect tenants, change routing, restore data, and override automated controls. Static administrator roles are overbroad, scripts bypass review, and an identity-provider compromise could expose every region. Redesign privileged operations.

Skills being evaluated

privileged access architecturehuman factorsblast-radius controlsecurity governance

The full reasoning guide is part of Pro

The scenario and evaluation focus above remain public. Pro unlocks the structured answer, trade-off analysis, follow-up probes, common weak answers, rubric, related reasoning, and any architecture diagram.

Sign in to continue

What the full guide covers

Clarify the decision
Establish scale assumptions
Functional and non-functional requirements
High-level architecture
Data model and flow
Consistency and transaction boundaries
Failure modes and recovery
Security and privacy
Observability and SLOs
Capacity and cost
Alternatives and trade-offs
Evolution and migration
What Staff and Principal candidates should emphasize