Salesforce Identity and Access Management Architect Practice Exam
Salesforce Identity and Access Management Architect
About Salesforce Identity and Access Management Architect Exam
The Salesforce Certified Identity and Access Management Architect exam imparts the ability to assess the environment and requirements with the objective to design secure and scalable identity management solutions on the Lightning Platform. As a Architect candidate experiences designing and implementing complex identity and access management strategies for communicating the solution and design trade-offs to business and technical stakeholders alike.
As a skilled professional you will be able to perform the following tasks -
- Design an identity architecture that may span multiple platforms and include integration and authentication across systems.
- Articulate system design considerations, benefits, and recommendations for identity architecture.
- Apply general identity and access management best practices to Salesforce implementations.
Who should take the exam?
The Salesforce Certified Identity and Access Management Architect exam has been designed for Identity professionals who wish to prove their knowledge, skills, and ability to assess identity architecture. As well as, and designing secure, high-performance access management solutions on the Lightning Platform. Also, the professional planning to take the exam should be Identity professional with the proficiency to effectively communicate technical solutions to business and technical stakeholders. As a Salesforce Certified Identity and Access Management Architect, you must meet the following background -
- 1 year of Identity and Access Management experience
- 1 year of Salesforce experience with a major component security setup and design
- 2 years of Securities Technology experience
Typical Job Roles
- Enterprise Architect
- Technical Architect
- Security Architect
- Corporate Integration Architect
- Identity Architect
Exam Details
- Total Questions: 60 multiple-choice/multiple-select questions
- Exam Duration: 120 minutes
- Passing score: 67% and above
- References: No hard copy or online materials may be referenced during the exam.
- Prerequisite: None
Exam Outline
The Salesforce Identity and Access Management Architect exam covers the following topics -
Domain 1 - Understanding Identity Management Concepts (17%)
- Learn about common authentication patterns and understand the differences between each one.
- Learn about the building blocks that are part of an identity solution (authentication, authorization, and accountability) and how you enable those building blocks using Salesforce features.
- Learn about how trust is established between two systems.
- For a given scenario, recommend the appropriate method for provisioning users in Salesforce.
- For a given scenario, troubleshoot common points of failure that may be encountered in a single sign-on (SSO) solution (SAML, OAuth, etc.).
Domain 2 - Understanding Accepting Third-Party Identity in Salesforce (21%)
- For a given use case, describe when Salesforce is used as a Service Provider (SP).
- For a given scenario, recommend the most appropriate way to provision users from identity stores in business-to-employer (B2E) and business-to-consumer (B2C) scenarios.
- For a given scenario, recommend the appropriate authentication mechanism when Salesforce needs to accept third-party Identity (Enterprise Directory, Social, Community, etc.).
- For a given scenario, identify the ways to provision users in Salesforce to enable SSO and apply access rights.
- For a given scenario, identify the auditing and monitoring approaches available on the platform, and describe the tools available to diagnose Identity Provider (IdP) issues.
Domain 3 - Understanding Salesforce as an Identity Provider (17%)
- For a given scenario, identify the most appropriate OAuth flow (Web-based, JWT, User agent, Device auth flow).
- For a given scenario, recommend appropriate Scope and Configuration of the Connected App for Authorization.
- Learn about the various implementation concepts of OAuth (scopes, secrets, tokens, refresh tokens, token expiration, token revocation, etc.).
- For a given scenario, recommend the Salesforce technologies that should be used to provide identity to the third-party system (Canvas, Connected Apps, App Launcher, etc.).
Domain 4 - Understanding Access Management Best Practices (15%)
- For a given set of requirements, determine the most appropriate methods of multi-factor authentication (MFA) to use, and the right type of session they should yield.
- For a given scenario, determine how to best assign roles, profiles, and permission sets to a user during the SSO process, how to keep these assignments up to date.
- For a given scenario, describe which tools you can apply to audit and verify the activity/user during and after login.
- For a given scenario, identify the configuration settings for a Connected App.
Domain 5 - Salesforce Identity (12%)
- For a given set of requirements, identify the role Identity Connect plays in a Salesforce Identity implementation.
- For a given scenario, identify if Salesforce Customer 360 Identity fits into a fully-developed Customer 360 solution.
- For a given set of requirements, recommend the most appropriate Salesforce license type(s).
Domain 6 - Community (Partner and Customer) (18%)
- Learn about the capabilities for customizing the user experience for Experience Cloud (Branding options, authentication options, identity verification self-registration, communications, password reset, etc.).
- For a given set of requirements, determine the best way to support external IdPs in communities and leverage the right user/contact model to support community user experience.
- For a given set of requirements, understand the advantages and limitations of External Identity solutions and associated licenses.
- For a given scenario, determine when to use an embedded login.
What do we offer?
- Full-Length Mock Test with unique questions in each test set
- Practice objective questions with section-wise scores
- In-depth and exhaustive explanation for every question
- Reliable exam reports evaluating strengths and weaknesses
- Latest Questions with an updated version
- Tips & Tricks to crack the test
- Unlimited access
What are our Practice Exams?
- Practice exams have been designed by professionals and domain experts that simulate real-time exam scenario.
- Practice exam questions have been created on the basis of content outlined in the official documentation.
- Each set in the practice exam contains unique questions built with the intent to provide real-time experience to the candidates as well as gain more confidence during exam preparation.
- Practice exams help to self-evaluate against the exam content and work towards building strength to clear the exam.
- You can also create your own practice exam based on your choice and preference