Winter Special Sale Limited Time 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 2493360325

Good News !!! Identity-and-Access-Management-Architect Salesforce Certified Identity andAccess Management Architect (SU24) is now Stable and With Pass Result

Identity-and-Access-Management-Architect Practice Exam Questions and Answers

Salesforce Certified Identity andAccess Management Architect (SU24)

Last Update 5 days ago
Total Questions : 243

Salesforce Certified Identity andAccess Management Architect (SU24) is stable now with all latest exam questions are added 5 days ago. Incorporating Identity-and-Access-Management-Architect practice exam questions into your study plan is more than just a preparation strategy.

Identity-and-Access-Management-Architect exam questions often include scenarios and problem-solving exercises that mirror real-world challenges. Working through Identity-and-Access-Management-Architect dumps allows you to practice pacing yourself, ensuring that you can complete all Salesforce Certified Identity andAccess Management Architect (SU24) practice test within the allotted time frame.

Identity-and-Access-Management-Architect PDF

Identity-and-Access-Management-Architect PDF (Printable)
$48
$119.99

Identity-and-Access-Management-Architect Testing Engine

Identity-and-Access-Management-Architect PDF (Printable)
$56
$139.99

Identity-and-Access-Management-Architect PDF + Testing Engine

Identity-and-Access-Management-Architect PDF (Printable)
$70.8
$176.99
Question # 1

Universal Containers wants to allow its customers to log in to its Experience Cloud via a third party authentication provider that supports only the OAuth protocol.

What should an identity architect do to fulfill this requirement?

Options:

A.  

Contact Salesforce Support and enable delegate single sign-on.

B.  

Create a custom external authentication provider.

C.  

Use certificate-based authentication.

D.  

Configure OpenID Connect authentication provider.

Discussion 0
Question # 2

Universal Containers (UC) has a strict requirement to authenticate users to Salesforce using their mainframe credentials. The mainframe user store cannot be accessed from a SAML provider. UC would also like to have users in Salesforce created on the fly if they provide accurate mainframe credentials.

How can the Architect meet these requirements?

Options:

A.  

Use a Salesforce Login Flow to call out to a web service and create the user on the fly.

B.  

Use the SOAP API to create the user when created on the mainframe; implement Delegated Authentication.

C.  

Implement Just-In-Time Provisioning on the mainframe to create the user on the fly.

D.  

Implement OAuth User-Agent Flow on the mainframe; use a Registration Handler to create the user on the fly.

Discussion 0
Question # 3

Northern Trail Outfitters is implementing a busmess-to-business (B2B) collaboration site using Salesforce Experience Cloud. The partners will authenticate with an existing identity provider and the solution will utilize Security Assertion Markup Language (SAML) to provide single sign-on to Salesforce. Delegated administration will be used in the Expenence Cloud site to allow the partners to administer their users' access.

How should a partner identity be provisioned in Salesforce for this solution?

Options:

A.  

Create only a contact.

B.  

Create a contactless user.

C.  

Create a user and a related contact.

D.  

Create a person account.

Discussion 0
Question # 4

Universal containers (UC) has decided to use identity connect as it's identity provider. UC uses active directory(AD) and has a team that is very familiar and comfortable with managing ad groups. UC would like to use AD groups to help configure salesforce users. Which three actions can AD groups control through identity connect? Choose 3 answers

Options:

A.  

Public Group Assignment

B.  

Granting report folder access

C.  

Role Assignment

D.  

Custom permission assignment

E.  

Permission sets assignment

Discussion 0
Question # 5

A university is planning to set up an identity solution for its alumni. A third-party identity provider will be used for single sign-on Salesforce will be the system of records. Users are getting error messages when logging in.

Which Salesforce feature should be used to debug the issue?

Options:

A.  

Apex Exception Email

B.  

View Setup Audit Trail

C.  

Debug Logs

D.  

Login History

Discussion 0
Question # 6

Universal Containers is considering using Delegated Authentication as the sole means of Authenticating of Salesforce users. A Salesforce Architect has been brought in to assist with the implementation. What two risks Should the Architect point out? Choose 2 answers

Options:

A.  

Delegated Authentication is enabled or disabled for the entire Salesforce org.

B.  

UC will be required to develop and support a custom SOAP web service.

C.  

Salesforce users will be locked out of Salesforce if the web service goes down.

D.  

The web service must reside on a public cloud service, such as Heroku.

Discussion 0
Question # 7

Universal Containers (UC) is looking to purchase a third-party application as an Identity Provider. UC is looking to develop a business case for the purchase in general and has enlisted an Architect for advice. Which two capabilities of an Identity Provider should the Architect detail to help strengthen the business case? Choose 2 answers

Options:

A.  

The Identity Provider can authenticate multiple applications.

B.  

The Identity Provider can authenticate multiple social media accounts.

C.  

The Identity provider can store credentials for multiple applications.

D.  

The Identity Provider can centralize enterprise password policy.

Discussion 0
Question # 8

Northern Trail Outfitters (NTO) has a number of employees who do NOT need access Salesforce objects. Trie employees should sign in to a custom Benefits web app using their Salesforce credentials.

Which license should the identity architect recommend to fulfill this requirement?

Options:

A.  

Identity Only License

B.  

External Identity License

C.  

Identity Verification Credits Add-on License

D.  

Identity Connect License

Discussion 0
Question # 9

The executive sponsor for an organization has asked if Salesforce supports the ability to embed a login widget into its service providers in order to create a more seamless user experience.

What should be used and considered before recommending it as a solution on the Salesforce Platform?

Options:

A.  

OpenID Connect Web Server Flow. Determine if the service provider is secure enough to store the client secret on.

B.  

Embedded Login. Identify what level of UI customization will be required to make it match the service providers look and feel.

C.  

Salesforce REST apis. Ensure that Secure Sockets Layer (SSL) connection for the integration is used.

D.  

Embedded Login. Consider whether or not it relies on third party cookies which can cause browser compatibility issues.

Discussion 0
Question # 10

Universal Containers (UC) wants its users to access Salesforce and other SSO-enabled applications from a custom web page that UC magnets. UC wants its users to use the same set of credentials to access each of the applications. what SAML SSO flow should an Architect recommend for UC?

Options:

A.  

SP-Initiated with Deep Linking

B.  

SP-Initiated

C.  

IdP-Initiated

D.  

User-Agent

Discussion 0
Get Identity-and-Access-Management-Architect dumps and pass your exam in 24 hours!

Free Exams Sample Questions