SailPoint Identity-Security-Administrator - SailPoint Certified Identity Security Administrator
Total 99 questions
Is this statement regarding access management valid?
Proposed Solution / Statement:
A reviewer can be required to provide a comment when rejecting a role request.
Does this proposed solution meet the requirement / solve the scenario?
The security team has asked for a technical briefing on how authentication works with SailPoint.
Does the following statement correctly describe authentication methods in SailPoint and industry standards?
Proposed Solution / Statement:
When configuring SAML authentication in SailPoint, the Entity ID must exactly match the SAML metadata EntityID supplied by the identity provider for successful federation.
Does this proposed solution meet the requirement / solve the scenario?
A newly created entitlement is not showing up in Identity Security Cloud. An aggregation issue is suspected. The administrator wants to verify what went wrong.
Is this the correct way to troubleshoot the issue?
Proposed Solution / Statement:
Look at the "Entitlement Mapping" settings under the source configuration to confirm that the entitlement schema is correctly defined.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding role management?
Proposed Solution / Statement:
Adding an entitlement to an existing role provisions an entitlement on all the identities that are currently a member of the role.
Does this proposed solution meet the requirement / solve the scenario?
Is this statement true regarding Identity Governance and Administration (IGA)?
Proposed Solution / Statement:
IGA enables security teams to gain access insight and visibility into how users access systems and apply policies and controls to ensure secure access.
Does this proposed solution meet the requirement / solve the scenario?
Is this a step that can be taken on a certification due date when a certification reviewer has left the organization without completing the review?
Proposed Solution / Statement:
An Administrator can initiate reassignment of a pending certification to a new reviewer.
Does this proposed solution meet the requirement / solve the scenario?
Reference the following search query:
created:[now-24h TO now] AND (@access(displayName:New_Hire_Access) OR @access(source.name:Acme_HRMS)) AND @entitlements(name:Manager_Access)
Is this statement true about the search query above?
Proposed Solution / Statement:
Removing the AND @entitlements(name:Manager_Access) from the query makes it valid, returning users who were created within the last 24 hours and either have access to the source Acme_HRMS or have the New_Hire_Access access profile assigned.
Does this proposed solution meet the requirement / solve the scenario?
On 4 February 2021, the following error occurred on source Control Central of type Active Directory for identity Clarence.Harper:
Failed to update attributes. There is no such object on the server.
Is this a valid place to look for more information about what caused the error?
Proposed Solution / Statement:
In Identity Security Cloud go to search and query for:
type:event AND subtype:provision AND error:TRUE AND date: > =2021-2-4 AND identity:Clarence.Harper
Open the relevant result for more details.
Does this proposed solution meet the requirement / solve the scenario?
Below are the requirements for configuring user provisioning in an organization's Finance department.
Contractors in the organization MUST NOT be auto-provisioned with the default Office 365 license, as contractors in departments other than Finance have different license requirements.
Every Finance department user — whether employee or contractor — must be assigned one Office 365 E3 license.
No Finance employee or contractor should be provisioned more than one type of Office 365 license.
Is this a valid approach for the Identity Security Administrator to provide the necessary access?
Proposed Solution / Statement:
Create an ISC Role with membership criteria that includes all Finance department users and associate the Office 365 E3 license entitlement with the role. This ensures Finance department users receive E3 license access automatically.
Does this proposed solution meet the requirement / solve the scenario?
