Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Salesforce Identity and Access Management Designer Identity-and-Access-Management-Architect Questions and answers with CertsForce

Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions
Questions # 1:

Universal Containers uses Salesforce as an identity provider and Concur as the Employee Expense management system. The HR director wants to ensure Concur accounts for employees are created only after the appropriate approval in the Salesforce org.

Which three steps should the identity architect use to implement this requirement.

Choose 3 answers

Options:

A.

Create an approval process for a custom object associated with the provisioning flow.


B.

Create an approval process for UserProvisioningReguest object associated with the provisioning flow.


C.

Create a connected app for Concur in Salesforce.


D.

Enable User Provisioning for the connected app.


E.

Create an approval process for User object associated with the provisioning flow.


Expert Solution
Questions # 2:

An identity architect is implementing a mobile-first Consumer Identity Access Management (CIAM) for external users.

User authentication is the only requirement. The users email or mobile phone number should be supported as a username.

Which two licenses are needed to meet this requirement?

Choose 2 answers

Options:

A.

External Identity Licenses


B.

Email Verification Credits


C.

Identity Connect Licenses


D.

SMS Verification Credits


Expert Solution
Questions # 3:

A leading fitness tracker company is getting ready to launch a customer community. The company wants its customers to login to the community and connect their fitness device to their profile. Customers should be able to obtain exercise details and fitness recommendation in the community.

Which should be used to satisfy this requirement?

Options:

A.

Named Credentials


B.

Login Flows


C.

OAuth Device Flow


D.

OAuth Asset Token flow


Expert Solution
Questions # 4:

Universal Containers would like its customers to register and log in to a portal built on

Salesforce Experience Cloud. Customers should be able to use their Facebook or LinkedIn

credentials for ease of use.

Which three steps should an identity architect take to implement social sign-on?

Choose 3 answers

Options:

A.

Update the default registration handlers to create and update users.


B.

Enable " Federated Single Sign-On Using SAML " .


C.

Enable " Facebook " and " LinkedIn " under Login Page Setup.


D.

Create authentication providers for both Facebook and LinkedIn.


E.

Register both Facebook and LinkedIn as connected apps.


Expert Solution
Questions # 5:

Universal Containers (UC) has decided to replace the homegrown customer portal with Salesforce Experience Cloud. UC will continue to use Its third-party single sign-on (SSO) solution that stores all of its customer and partner credentials.

The first time a customer logs in to the Experience Cloud site through SSO, a user record needs to be created automatically.

Which solution should an identity architect recommend in order to automatically provision users in Salesforce upon login?

Options:

A.

Third-party AppExchange solution


B.

Custom middleware and web services


C.

Just-in-Time (JIT) provisioning


D.

Custom login flow and Apex handler


Expert Solution
Questions # 6:

A university is planning to set up an identity solution for its alumni. A third-party identity provider will be used for single sign-on and Salesforce will be the system of records. Users are getting error messages when logging in.

Which Salesforce feature should be used to debug the issue?

Options:

A.

News Legs


B.

Web Apps Audit Trail


C.

Login History


D.

About Exception Email


Expert Solution
Questions # 7:

A public sector agency is setting up an identity solution for its citizens using a Community built on Experience Cloud and requires the new user registration functionality to capture first name, last name, and phone number. The phone number will be used for passwordless login.

Which feature should an identity architect recommend to meet the requirements?

Options:

A.

Integrate with social websites (Facebook, LinkedIn, Twitter)


B.

Use Login Discovery


C.

Create a custom Lightning Web Component


D.

Use an external Identity Provider


Expert Solution
Questions # 8:

Universal Containers is building a web application that will connect with the Salesforce API using JWT OAuth Flow.

Which two settings need to be configured in the connect app to support this requirement?

Choose 2 answers

Options:

A.

The Use Digital Signature option in the connected app.


B.

The " web " OAuth scope in the connected app.


C.

The " api " OAuth scope in the connected app.


D.

The " eclair_api " OAuth scope in the connected app.


Expert Solution
Questions # 9:

Universal Containers is implementing Salesforce Identity to broker authentication from its enterprise single sign-on (550) solution through Salesforce to third party applications using SAML.

What role does Salesforce Identity play in its relationship with the enterprise S50 system?

Options:

A.

Service Provider {SP)


B.

Identity Provider [IdP)


C.

Resource Server


D.

Client Application


Expert Solution
Questions # 10:

Northern Trail Outfitters (NTO) has an existing business-to-consumer (B2C) website that does NOT support single sign-on standards, such as Security Assertion Markup Language (SAML) or OAuth. NTO wants to use Salesforce Identity to register and authenticate new customers on the website.

Which three Salesforce features should an Identity architect use in order to provide social sign-in capabilities for the website?

Choose 3 answers

Options:

A.

Connected Apps


B.

Authentication Providers


C.

Delegated Authentication


D.

Embedded Login


E.

Identity Connect


Expert Solution
Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions