Does this statement accurately describe the proper methods for creating and scheduling reports in Identity Security Cloud?
Proposed Solution / Statement:
All valid search queries can be scheduled as reports.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding uncorrelated accounts?
Proposed Solution / Statement:
An uncorrelated account can be sourced from both authoritative and non-authoritative sources.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid scenario where a Separation of Duties policy should be used?
Proposed Solution / Statement:
One team member assumes the role of user administration, application administration, and data backup management.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about common authentication methods?
Proposed Solution / Statement:
The Identity Provider and Service Provider in a SAML setup trust each other based on public keys that have been exchanged as part of the configuration.
Does this proposed solution meet the requirement / solve the scenario?
Is this statement regarding access management valid?
Proposed Solution / Statement:
A reviewer can be required to provide a comment when rejecting a role request.
Does this proposed solution meet the requirement / solve the scenario?
Does this statement accurately describe the purpose of the Virtual Appliance (VA)?
Proposed Solution / Statement:
The VA allows the tenant to connect to on-prem sources.
Does this proposed solution meet the requirement / solve the scenario?
An organization is considering purchasing an IGA tool. The manager asks the administrator to explain what compliance features the IGA tool provides for separation of duties, protecting personally identifying data and privileged access, and how the company can prove to the auditors that they comply with all laws and regulations.
Is this a good explanation of one of such features?
Proposed Solution / Statement:
"Separation of duties can be enforced using rules that can be configured in the system. These rules look for forbidden combinations of access owned by a single user. The rules can be used in a detective way, meaning actively searching for these forbidden combinations, or a preventative way, meaning that an extra validation step is made when a change in user access is requested."
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about the creation of a PAT?
Proposed Solution / Statement:
Each user can have up to 10 Personal Access Tokens.
Does this proposed solution meet the requirement / solve the scenario?
Assuming an access item's approval type is set to "reviewer," does the following statement accurately describe the approval flow behavior?
Proposed Solution / Statement:
When a user requests access for themselves and they are also in the approval chain, the approval flow will route to their manager instead to prevent a conflict of interest.
Does this proposed solution meet the requirement / solve the scenario?
An Identity Security Administrator received a request to audit a distribution list on a monthly cadence.
Place the following steps in the correct order in order to accomplish this task:

Is this a valid statement regarding access request approval processes?
Proposed Solution / Statement:
A governance group should have members before using it in the approval process to ensure that it can be approved.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about how an administrator reviews provisioning activity?
Proposed Solution / Statement:
By default, account activity information is presented in a descending sequence based on the Last Modified Date. However, the administrator can sort ascending or descending by any column.
Does this proposed solution meet the requirement / solve the scenario?
Is the following true regarding User Levels and permissions?
Proposed Solution / Statement:
Default user permissions are sufficient to review an assigned certification.
Does this proposed solution meet the requirement / solve the scenario?
Is this a step that can be taken on a certification due date when a certification reviewer has left the organization without completing the review?
Proposed Solution / Statement:
The reviewer's manager can access the certification campaign and complete all pending reviews.
Does this proposed solution meet the requirement / solve the scenario?
Does this statement correctly describe a function of the Virtual Appliance (VA)?
Proposed Solution / Statement:
SaaS-based applications require a cloud-based VA.
Does this proposed solution meet the requirement / solve the scenario?
Review the following log entry:
[
{
"id": "2c9180866166b5b0016167c32ef31a66",
"name": "acme AD-TX Cluster",
"description": "acme AD - TX Cluster",
"clientType": "CCG",
"ccgVersion": "373_535_70.2.0",
"pinnedConfig": true,
"logConfiguration": null
},
{
"id": "2c9180846a93ce60016ab29f039944de",
"name": "acme AD-NY Cluster",
"description": "acme AD-NY Cluster",
"clientType": "CCG",
"ccgVersion": "373_535_70.2.0",
"pinnedConfig": true,
"logConfiguration": {
"clientId": null,
"durationMinutes": 60,
"expiration": "2025-12-15T19:13:36.079Z",
"rootLevel": "TRACE",
"logLevels": {
"sailpoint.connector.ADLDAPConnector": "TRACE"
}
}
}
]
A source owner for Active Directory has found problems with aggregation and has requested log files for their source.
Is this a valid way for the Administrator to assist in retrieving the correct logs?
Proposed Solution / Statement:
The following REST API call can be used to collect and export logs from the acme AD-NY Cluster:
GET https://acme.api.identitynow.com/v3/sources/2c9180846a93ce60016ab29f039944de/logs
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding Identity Security Cloud (ISC) policies?
Proposed Solution / Statement:
Separation of duties policies help prevent users from gaining toxic combinations of access.
Does this proposed solution meet the requirement / solve the scenario?
An Identity Security Cloud tenant is configured to disable all source accounts for an identity that enters the terminated lifecycle state. A database administrator reports they have been noticing that employees who are terminated, still have their database accounts as "Active" in the source system.
Is this a valid troubleshooting option for the scenario above?
Proposed Solution / Statement:
On the Identity, validate that the Lifecycle State attribute value that is set for the affected users is "Terminated".
Does this proposed solution meet the requirement / solve the scenario?
As part of the organization's update to its access request approval and notification process, does the following statement accurately reflect the global reminder and escalation policy?
Proposed Solution / Statement:
For governance groups, access requests will be sent only to the manager of an active member.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding the objects that represent access of systems managed by Identity Security Cloud?
Proposed Solution / Statement:
Criteria for automatic assignment of a Role can be set to Standard Criteria or Identity List.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding sources in Identity Security Cloud?
Proposed Solution / Statement:
A source is the Identity Security Cloud representation of a third-party application, database, or directory management system that maintains its own set of user accounts or personnel records.
Does this proposed solution meet the requirement / solve the scenario?
A legacy custom-built application, which contains contractor information used by HR, must be integrated with the Identity Security Cloud (ISC) solution as the authoritative source.
Is the following a valid point to consider regarding the integration?
Proposed Solution / Statement:
Generic connectors (such as delimited file or JDBC) can be used to integrate the legacy custom-built application.
Does this proposed solution meet the requirement / solve the scenario?
The security team has asked for a technical briefing on how authentication works with SailPoint.
Does the following statement correctly describe authentication methods in SailPoint and industry standards?
Proposed Solution / Statement:
When configuring SAML authentication in SailPoint, the Entity ID must exactly match the SAML metadata EntityID supplied by the identity provider for successful federation.
Does this proposed solution meet the requirement / solve the scenario?