SailPoint Certified IdentityIQ Engineer Exam Questions

Page: 1 / 14
Total 122 questions
Question 1

Is this a correct procedure for testing generated emails in a non-production system?

Solution: Change the Email Notification Type to Redirect to file using FTP protocol under Global Settings > Configure IdentitylQ Settings > Mail Settings, run the test scenario, and verify that the email text saved to the redirected file.



Answer : B

The proposed solution suggests changing the Email Notification Type to 'Redirect to file using FTP protocol' under Global Settings > Configure IdentityIQ Settings > Mail Settings. However, IdentityIQ does not provide an option to redirect emails to a file using the FTP protocol directly through the Global Settings in the application.

Typically, to test generated emails in a non-production environment, you would change the Email Notification Type to 'Redirect to File' (if the option is available) or configure an SMTP server with a different setup that captures emails in a file or a specific mailbox designed for testing purposes. The specific steps for testing email generation may vary, but the solution as stated does not align with standard IdentityIQ practices.

Thus, the correct answer is B. No.


Question 2

Can this action be performed as part of configuring an application definition in IdentitylQ?

Solution: Define account correlation via a rule.



Answer : A

Yes, defining account correlation via a rule is an action that can be performed as part of configuring an application definition in SailPoint IdentityIQ. Account correlation rules are often used to determine how accounts from different sources are linked to identities within IdentityIQ. These rules allow for complex logic to be applied when matching accounts to identities, beyond simple attribute matching.


SailPoint IdentityIQ Administration Guide (Section on Account Correlation)

SailPoint IdentityIQ Application Configuration Guide (Using Rules for Account Correlation)

Question 3

Is this statement correct about writing and executing source mapping rules to populate identity attributes?

Solution: The Identity object is passed to the rule.



Answer : A

The statement 'The Identity object is passed to the rule' is correct. When writing source mapping rules to populate identity attributes, the Identity object is indeed passed to the rule. This allows the rule to access and modify attributes on the Identity object based on the logic defined within the rule.

Therefore, the correct answer is A. Yes.


Question 4

Is this statement true about certifications?

Solution: All certifications include generation, the active period, sign-off, and the end period.



Answer : A

The statement that 'All certifications include generation, the active period, sign-off, and the end period' is true. These stages are fundamental to the certification process in SailPoint IdentityIQ:

Generation: This is the initial stage where the certification campaign is created. During this phase, the system generates the list of items (such as access, roles, or entitlements) that need to be reviewed.

Active Period: Once the certification is generated, it enters the active period. During this time, the designated reviewers are responsible for examining the items in the certification, making decisions (such as approving or revoking access), and providing any necessary comments.

Sign-off: After the active period, the certification moves into the sign-off stage. Here, the final approver(s) review the decisions made during the active period and formally approve or reject the certification outcomes.

End Period: Finally, the end period marks the conclusion of the certification campaign. The certification is closed, and the results are archived. Any necessary actions, such as revoking access or triggering workflows based on the certification decisions, are implemented.

These stages are essential to the structured process that ensures all access rights are properly reviewed and either maintained or adjusted according to the organization's policies.


SailPoint IdentityIQ Certification Administrator's Guide

SailPoint IdentityIQ Certification Process Documentation

SailPoint IdentityIQ Administration Guide (Sections on Certification Lifecycle and Workflow)

Question 5

Is this a purpose of an IdentitylQ certification?

Solution: to attest lo a user's system access



Answer : A

Yes, this is indeed one of the primary purposes of an IdentityIQ certification. Certifications are conducted to attest to a user's system access, ensuring that each user has appropriate and justified access rights to applications, data, and systems within the organization. This is central to IdentityIQ's access governance and compliance processes.


SailPoint IdentityIQ Certification Guide

SailPoint IdentityIQ Governance Overview

Question 6

An implementation engineer needs to perform an upgrade of IdentitylQ between releases. Is the following statement true?

Solution: Supported platforms of an older version of IdentitylQ will always be supported in newer versions of IdentitylQ.



Answer : B

The statement that supported platforms of an older version of IdentityIQ will always be supported in newer versions of IdentityIQ is incorrect. As SailPoint releases new versions of IdentityIQ, the list of supported platforms (such as specific versions of Java, databases, application servers, etc.) may change. Newer versions of IdentityIQ might deprecate support for older platforms or require newer versions of software components. It is essential to consult the Release Notes or the Supported Platforms documentation for the specific IdentityIQ version to ensure compatibility.

Thus, the correct answer is B. No.

Reference: This conclusion is based on SailPoint IdentityIQ Release Notes and Supported Platforms documentation, which specify platform compatibility for each version and often include notes on deprecated platforms.


Question 7

Is this a correct procedure for testing generated emails in a non-production system?

Solution: Change the Email Notification Type to POP3 under Global Settings > Configure IdentitylQ Settings > Mail Settings, run the test scenario. and verity if the emails were successfully delivered to mailboxes specified on Identity objects.



Answer : B

Changing the Email Notification Type to POP3 under Global Settings > Configure IdentityIQ Settings > Mail Settings is not a correct procedure for testing generated emails in a non-production system. POP3 is an email retrieval protocol, not a method for sending or redirecting email notifications from IdentityIQ. IdentityIQ requires an SMTP server to send emails, and POP3 is typically used by email clients to retrieve emails from a server, not by a server to send emails.

For testing purposes in a non-production environment, you would typically configure the SMTP server settings to either redirect emails to a specific testing mailbox or use a 'Redirect to File' option, if available, to capture emails locally.

Thus, the correct answer is B. No.


Page:    1 / 14   
Total 122 questions