An organization must maintain both production and sandbox tenants of Identity Security Cloud. The administrator needs to maintain consistent configurations across both environments, and backup and restore from previous configuration backups.
Does the following statement accurately describe how Configuration Hub functionality can help in this scenario?
Proposed Solution / Statement:
Configuration Hub allows one to create configuration templates that can be exported and imported across tenants.
Does this proposed solution meet the requirement / solve the scenario?
Is this statement regarding access management valid?
Proposed Solution / Statement:
A reviewer can be required to provide a comment when rejecting a role request.
Does this proposed solution meet the requirement / solve the scenario?
Is the following statement about entitlements valid?
Proposed Solution / Statement:
Entitlements represent the specific access rights on a source.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid scenario where a Separation of Duties policy should be used?
Proposed Solution / Statement:
One team member assumes the role of user administration, application administration, and data backup management.
Does this proposed solution meet the requirement / solve the scenario?
On 4 February 2021, the following error occurred on source Control Central of type Active Directory for identity Clarence.Harper:
Failed to update attributes. There is no such object on the server.
Is this a valid place to look for more information about what caused the error?
Proposed Solution / Statement:
In Identity Security Cloud go to search and query for:
type:event AND subtype:provision AND error:TRUE AND date: > =2021-2-4 AND identity:Clarence.Harper
Open the relevant result for more details.
Does this proposed solution meet the requirement / solve the scenario?
When reviewing accounts in a flat file source, some entitlements seem to be missing.
Is this a potential cause of this issue?
Proposed Solution / Statement:
The delimited file is not sorted by account ID. All entitlements for a single account ID must be listed together within the delimited file. Otherwise, only a partial subset of the entitlements will be added to the identity.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding uncorrelated accounts?
Proposed Solution / Statement:
An uncorrelated account can be sourced from both authoritative and non-authoritative sources.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding the objects that represent access of systems managed by Identity Security Cloud?
Proposed Solution / Statement:
When criteria for automatic assignment of a Role are set to Identity List, the names of identities to include can be specified using wildcards, for example "John*".
Does this proposed solution meet the requirement / solve the scenario?
Is this statement regarding access management valid?
Proposed Solution / Statement:
It is mandatory to make a role requestable.
Does this proposed solution meet the requirement / solve the scenario?
Does this statement accurately describe the purpose of the Virtual Appliance (VA)?
Proposed Solution / Statement:
The VA allows the tenant to connect to on-prem sources.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid purpose for creating an identity profile?
Proposed Solution / Statement:
To assign specific permissions or access to users based on roles.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement regarding sources in Identity Security Cloud?
Proposed Solution / Statement:
Sources primarily serve as backup storage locations for identity data to ensure business continuity in case of system failures.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about sources?
Proposed Solution / Statement:
A source contains its own set of user accounts.
Does this proposed solution meet the requirement / solve the scenario?
Assuming an access item's approval type is set to "reviewer," does the following statement accurately describe the approval flow behavior?
Proposed Solution / Statement:
When a user requests access for themselves and they are also in the approval chain, the approval flow will route to their manager instead to prevent a conflict of interest.
Does this proposed solution meet the requirement / solve the scenario?
Is the following true regarding User Levels and permissions?
Proposed Solution / Statement:
Role Admin and Source Sub-Admin can be granted to an identity at the same time.
Does this proposed solution meet the requirement / solve the scenario?
Users are complaining that they would like to request access to groups that have recently been added to the Corporate Directory system, but they are unable to see them. The system feature Enable Entitlement Requests has been enabled and access request segments have not been enabled.
Is this a valid step to debug the problem?
Proposed Solution / Statement:
Open the source configuration and navigate to the Access Profiles page to check if the group is included in it and thus hidden by any Access Profile.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid way to set-up role assignment criteria?
Proposed Solution / Statement:
A list of Excluded Identities can be defined to prevent specific identities from receiving the role membership.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about identity profile?
Proposed Solution / Statement:
The priority of an identity profile can be updated via REST API.
Does this proposed solution meet the requirement / solve the scenario?
An Identity Security Administrator notices that a Virtual Appliance (VA) is no longer communicating with Identity Security Cloud.
Is this an appropriate step to take to troubleshoot the issue?
Proposed Solution / Statement:
Test the connection with the VPN enabled and disabled to exclude it as the root cause of the issue.
Does this proposed solution meet the requirement / solve the scenario?
A new employee's identity is not correctly created and shows in the Identity Exceptions report on the Identity Profile.
Is this a correct step towards analyzing and resolving the problem?
Proposed Solution / Statement:
Ensure the account attributes mapped to the identity attributes User Name (uid), Work Email (email), and Last Name are populated correctly.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid scenario for reviewing access requests in the approval management page?
Proposed Solution / Statement:
It is possible for an administrator to supersede an approver's cancellation of a request.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about sources?
Proposed Solution / Statement:
A Delimited File Source can automatically aggregate from a file share.
Does this proposed solution meet the requirement / solve the scenario?
Is this a valid statement about how an administrator reviews provisioning activity?
Proposed Solution / Statement:
By default, account activity information is presented in a descending sequence based on the Last Modified Date. However, the administrator can sort ascending or descending by any column.
Does this proposed solution meet the requirement / solve the scenario?
An Identity Security Administrator received a request to audit a distribution list on a monthly cadence.
Place the following steps in the correct order in order to accomplish this task:

Is this a valid statement regarding the objects that represent access of systems managed by Identity Security Cloud?
Proposed Solution / Statement:
Criteria for automatic assignment of a Role can be set to Standard Criteria or Identity List.
Does this proposed solution meet the requirement / solve the scenario?
Is this a step that can be taken on a certification due date when a certification reviewer has left the organization without completing the review?
Proposed Solution / Statement:
The reviewer's manager can access the certification campaign and complete all pending reviews.
Does this proposed solution meet the requirement / solve the scenario?