Weekend Sale Special - 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: big75certs

Free and Premium SailPoint Identity-Security-Administrator Dumps Questions Answers

SailPoint Certified Identity Security Administrator Questions and Answers

Question 1

Does this statement correctly describe a function of the Virtual Appliance (VA)?

Proposed Solution / Statement:

SaaS-based applications require a cloud-based VA.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Buy Now
Question 2

Is this a valid statement regarding sources in Identity Security Cloud?

Proposed Solution / Statement:

Sources primarily serve as backup storage locations for identity data to ensure business continuity in case of system failures.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 3

Is this a step that can be taken on a certification due date when a certification reviewer has left the organization without completing the review?

Proposed Solution / Statement:

The reviewer's manager can access the certification campaign and complete all pending reviews.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 4

Is this authentication method description correct?

Proposed Solution / Statement:

Certificate-based authentication can be used to verify users and devices.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 5

A new employee's identity is not correctly created and shows in the Identity Exceptions report on the Identity Profile.

Is this a correct step towards analyzing and resolving the problem?

Proposed Solution / Statement:

Ensure the account attributes mapped to the identity attributes User Name (uid), Work Email (email), and Last Name are populated correctly.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 6

An Identity Security Cloud tenant is configured to disable all source accounts for an identity that enters the terminated lifecycle state. A database administrator reports they have been noticing that employees who are terminated, still have their database accounts as "Active" in the source system.

Is this a valid troubleshooting option for the scenario above?

Proposed Solution / Statement:

Reset the database source and re-aggregate all of the users.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 7

Assuming an access item's approval type is set to "reviewer," does the following statement accurately describe the approval flow behavior?

Proposed Solution / Statement:

When a user requests access for themselves and they are also in the approval chain, the approval flow will route to their manager instead to prevent a conflict of interest.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 8

As part of the organization's update to its access request approval and notification process, does the following statement accurately reflect the global reminder and escalation policy?

Proposed Solution / Statement:

If reviewers do not complete their reviews within the specified timeframe, the request will automatically be escalated to a new reviewer; this escalation process can occur up to three times.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 9

Is this a valid statement regarding Identity Security Cloud (ISC) policies?

Proposed Solution / Statement:

Governance Groups can only be assigned as the owner of the policy.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 10

Is the following true regarding User Levels and permissions?

Proposed Solution / Statement:

Role Admin and Source Sub-Admin can be granted to an identity at the same time.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 11

Is this statement true regarding Identity Governance and Administration (IGA)?

Proposed Solution / Statement:

Implementing an IGA solution fully automates user access reviews, approvals, and audits.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 12

Is the following a valid configuration item for the identity profile's sign-in and security settings?

Proposed Solution / Statement:

If Multifactor Authentication is configured, the users of the Identity Profile must provide proof of their identity in two ways before they are allowed to unlock their account or reset their password.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 13

Is this a valid statement regarding access request approval processes?

Proposed Solution / Statement:

A governance group should have members before using it in the approval process to ensure that it can be approved.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 14

On 4 February 2021, the following error occurred on source Control Central of type Active Directory for identity Clarence.Harper:

Failed to update attributes. There is no such object on the server.

Is this a valid place to look for more information about what caused the error?

Proposed Solution / Statement:

In Identity Security Cloud go to search and query for:

type:event AND subtype:provision AND error:TRUE AND date: > =2021-2-4 AND identity:Clarence.Harper

Open the relevant result for more details.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 15

Is this a valid scenario for reviewing access requests in the approval management page?

Proposed Solution / Statement:

It is possible for an administrator to supersede an approver's cancellation of a request.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 16

An organization must maintain both production and sandbox tenants of Identity Security Cloud. The administrator needs to maintain consistent configurations across both environments, and backup and restore from previous configuration backups.

Does the following statement accurately describe how Configuration Hub functionality can help in this scenario?

Proposed Solution / Statement:

Configuration Hub allows one to create configuration templates that can be exported and imported across tenants.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 17

Is the following statement regarding attribute sync valid?

Proposed Solution / Statement:

Attribute sync synchronizes entitlement information from the sources configured.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 18

A certification campaign was created for manager review. However, the user's certification campaign was assigned to an admin instead of their manager.

Is this a valid reason for why the campaign could have been reassigned?

Proposed Solution / Statement:

User does not have a manager assigned from HR.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 19

Is the following statement true about the characteristics of different connector types in Identity Security Cloud (ISC)?

Proposed Solution / Statement:

Active Directory (AD) connectors can handle both authentication and identity lifecycle management, including user provisioning.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 20

Test connection for the Active Directory source fails when Transport Layer Security (TLS) is on:

java.lang.Exception: [s0100] Failed to connect to server ...

PKIX path validation failed

sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target

Is this a valid step towards analyzing and resolving this issue?

Proposed Solution / Statement:

Upload the AD certificate into the TLS Settings page of the Active Directory source.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 21

Is this a valid way to set-up role assignment criteria?

Proposed Solution / Statement:

A list of Excluded Identities can be defined to prevent specific identities from receiving the role membership.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 22

Review the following log entry:

[

{

"id": "2c9180866166b5b0016167c32ef31a66",

"name": "acme AD-TX Cluster",

"description": "acme AD - TX Cluster",

"clientType": "CCG",

"ccgVersion": "373_535_70.2.0",

"pinnedConfig": true,

"logConfiguration": null

},

{

"id": "2c9180846a93ce60016ab29f039944de",

"name": "acme AD-NY Cluster",

"description": "acme AD-NY Cluster",

"clientType": "CCG",

"ccgVersion": "373_535_70.2.0",

"pinnedConfig": true,

"logConfiguration": {

"clientId": null,

"durationMinutes": 60,

"expiration": "2025-12-15T19:13:36.079Z",

"rootLevel": "TRACE",

"logLevels": {

"sailpoint.connector.ADLDAPConnector": "TRACE"

}

}

}

]

A source owner for Active Directory has found problems with aggregation and has requested log files for their source.

Is this a valid way for the Administrator to assist in retrieving the correct logs?

Proposed Solution / Statement:

The following REST API call can be used to collect and export logs from the acme AD-NY Cluster:

GET

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 23

Does this statement accurately describe the purpose of the Virtual Appliance (VA)?

Proposed Solution / Statement:

The VA eliminates the need for databases to store Personally Identifiable Information (PII).

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 24

An organization is considering purchasing an IGA tool. The manager asks the administrator to explain what compliance features the IGA tool provides for separation of duties, protecting personally identifying data and privileged access, and how the company can prove to the auditors that they comply with all laws and regulations.

Is this a good explanation of one of such features?

Proposed Solution / Statement:

"Separation of duties can be enforced using rules that can be configured in the system. These rules look for forbidden combinations of access owned by a single user. The rules can be used in a detective way, meaning actively searching for these forbidden combinations, or a preventative way, meaning that an extra validation step is made when a change in user access is requested."

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 25

Reference the following search query:

created:[now-24h TO now] AND (@access(displayName:New_Hire_Access) OR @access(source.name:Acme_HRMS)) AND @entitlements(name:Manager_Access)

Is this statement true about the search query above?

Proposed Solution / Statement:

Removing the AND @entitlements(name:Manager_Access) from the query makes it valid, returning users who were created within the last 24 hours and either have access to the source Acme_HRMS or have the New_Hire_Access access profile assigned.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 26

As part of the organization's update to its access request approval and notification process, does the following statement accurately reflect the global reminder and escalation policy?

Proposed Solution / Statement:

For governance groups, access requests will be sent only to the manager of an active member.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 27

Is this a valid statement regarding sources in Identity Security Cloud?

Proposed Solution / Statement:

A source is the Identity Security Cloud representation of a third-party application, database, or directory management system that maintains its own set of user accounts or personnel records.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 28

Is this a valid statement about common authentication methods?

Proposed Solution / Statement:

The Identity Provider and Service Provider in a SAML setup trust each other based on public keys that have been exchanged as part of the configuration.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No

Question 29

Below are the requirements for configuring user provisioning in an organization's Finance department.

    Contractors in the organization MUST NOT be auto-provisioned with the default Office 365 license, as contractors in departments other than Finance have different license requirements.

    Every Finance department user — whether employee or contractor — must be assigned one Office 365 E3 license.

    No Finance employee or contractor should be provisioned more than one type of Office 365 license.

Is this a valid approach for the Identity Security Administrator to provide the necessary access?

Proposed Solution / Statement:

Create an ISC Role with membership criteria that includes all Finance department users and associate the Office 365 E3 license entitlement with the role. This ensures Finance department users receive E3 license access automatically.

Does this proposed solution meet the requirement / solve the scenario?

Options:

A.

Yes

B.

No