Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
 

Salesforce Certified Identity and Access Management Designer Exam Actual Questions

The questions for Certified Identity and Access Management Designer were last updated on Oct. 11, 2024.
  • Viewing page 1 out of 15 pages.
  • Viewing questions 1-4 out of 60 questions

Topic 1 - Exam A

Question #1 Topic 1

Universal Containers (UC) has decided to build a new, highly sensitive application on the Lightning platform. The security team at UC has decided that they want users to provide a fingerprint in addition to username/password to authenticate to this application.
How can an Architect support fingerprints as a form of identification for Salesforce authentication?

  • A. Use Custom Login Flows with callouts to a third-party fingerprint scanning application.
  • B. Use Salesforce Two-factor Authentication with callouts to a third-party fingerprint scanning application.
  • C. Use Delegated Authentication with callouts to a third-party fingerprint scanning application.
  • D. Use an AppExchange product that does fingerprint scanning with native Salesforce Identity Confirmation.
Reveal Solution Hide Solution   Discussion   4

Correct Answer: D 🗳️

Question #2 Topic 1

Universal Containers (UC) is successfully using Delegated Authentication for their Salesforce users. The service supporting Delegated Authentication is written in Java. UC has a new CIO that is requiring all company web services be REST-ful and written in .Net.
Which two considerations should the UC Architect provide to the new CIO? (Choose two.)

  • A. Delegated Authentication will continue to work with REST services.
  • B. Delegated Authentication will continue to work with a .Net service.
  • C. Delegated Authentication will not work with REST services.
  • D. Delegated Authentication will not work with a .Net service.
Reveal Solution Hide Solution   Discussion   2

Correct Answer: BC 🗳️

Question #3 Topic 1

How should an Architect force users to authenticate with Two-factor Authentication (2FA) for Salesforce only when NOT connected to an internal company network?

  • A. Apply the “Two-factor Authentication for User Interface Logins” permission and Login IP Ranges for all Profiles.
  • B. Add the company's list of network IP addresses to the Login Range list under 2FA Setup.
  • C. Use Custom Login Flows with Apex to detect the user's IP address and prompt for 2FA if needed.
  • D. Use an Apex Trigger on the UserLogin object to detect the user's IP address and prompt for 2FA if needed.
Reveal Solution Hide Solution   Discussion  

Correct Answer: C 🗳️

Question #4 Topic 1

What is a role of an Identity Provider in a Single Sign-on setup using SAML?

  • A. Consume assertion
  • B. Revoke assertion
  • C. Validate assertion
  • D. Create assertion
Reveal Solution Hide Solution   Discussion  

Correct Answer: D 🗳️

Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...