Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
sale

Want to Unlock All Questions for this Exam?

Full Exam Access, Discussions, No Robots Checks

Salesforce Certified Identity and Access Management Designer Exam Actual Questions

The questions for Certified Identity and Access Management Designer were last updated on April 19, 2024.
  • Viewing page 1 out of 15 pages.
  • Viewing questions 1-4 out of 66 questions

Topic 1 - Exam A

Question #1 Topic 1

Universal Containers (UC) has decided to build a new, highly sensitive application on the Lightning platform. The security team at UC has decided that they want users to provide a fingerprint in addition to username/password to authenticate to this application.
How can an Architect support fingerprints as a form of identification for Salesforce authentication?

  • A. Use Custom Login Flows with callouts to a third-party fingerprint scanning application.
  • B. Use Salesforce Two-factor Authentication with callouts to a third-party fingerprint scanning application.
  • C. Use Delegated Authentication with callouts to a third-party fingerprint scanning application.
  • D. Use an AppExchange product that does fingerprint scanning with native Salesforce Identity Confirmation.
Reveal Solution Hide Solution   Discussion   3

Correct Answer: D 🗳️

Question #2 Topic 1

Universal Containers (UC) is successfully using Delegated Authentication for their Salesforce users. The service supporting Delegated Authentication is written in Java. UC has a new CIO that is requiring all company web services be REST-ful and written in .Net.
Which two considerations should the UC Architect provide to the new CIO? (Choose two.)

  • A. Delegated Authentication will continue to work with REST services.
  • B. Delegated Authentication will continue to work with a .Net service.
  • C. Delegated Authentication will not work with REST services.
  • D. Delegated Authentication will not work with a .Net service.
Reveal Solution Hide Solution   Discussion   2

Correct Answer: BC 🗳️

Question #3 Topic 1

How should an Architect force users to authenticate with Two-factor Authentication (2FA) for Salesforce only when NOT connected to an internal company network?

  • A. Apply the “Two-factor Authentication for User Interface Logins” permission and Login IP Ranges for all Profiles.
  • B. Add the company's list of network IP addresses to the Login Range list under 2FA Setup.
  • C. Use Custom Login Flows with Apex to detect the user's IP address and prompt for 2FA if needed.
  • D. Use an Apex Trigger on the UserLogin object to detect the user's IP address and prompt for 2FA if needed.
Reveal Solution Hide Solution   Discussion  

Correct Answer: C 🗳️

Question #4 Topic 1

What is a role of an Identity Provider in a Single Sign-on setup using SAML?

  • A. Consume assertion
  • B. Revoke assertion
  • C. Validate assertion
  • D. Create assertion
Reveal Solution Hide Solution   Discussion  

Correct Answer: D 🗳️

Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...