Salesforce Certified Identity and Access Management Architec

所在平台: Udemy

课程主页: https://www.udemy.com/course/salesforce-identity-access-management-architect-questions/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:Salesforce认证身份与访问管理架构师 课程概述:本课程旨在帮助专业人士获得Salesforce认证身份与访问管理架构师的资格,验证其在评估身份架构、设计安全高效的访问管理解决方案方面的能力,以及与商业和技术利益相关者沟通技术解决方案的能力。 考试所需技能:候选人需要具备以下能力以成功通过考试: - 设计集成多个平台的身份架构,支持跨系统认证。 - 解释系统设计考虑因素、优点,并提供身份架构的建议。 - 在Salesforce环境中实施身份与访问管理的最佳实践。 目标受众:此认证理想适合于那些评估环境和需求,以在Salesforce Customer 360平台上创建安全、可扩展身份管理解决方案的个人。该角色的专业人士具有设计和实施复杂身份与访问管理策略的经验,并能够有效地与商业和技术利益相关者沟通解决方案的权衡。 所需背景: - 经验:至少1年在Salesforce Customer 360平台上设计和实施身份与访问管理解决方案的经验;2年以上身份和/或安全技术经验。 - 典型职位:企业架构师、技术架构师、安全架构师、集成架构师、身份架构师、解决方案架构师。 关键能力:候选人应展示以下能力: - 区分联合和委派单点登录(SSO)。 - 收集需求并配置Salesforce中的委派认证和SAML。 - 理解身份提供者(IdP)启动的SAML和服务提供者(SP)启动的SAML之间的区别,并确定其适用的使用场景。 - 建立IdP和SP之间的信任关系。 - 评估特定项目的身份联合能力。 - 理解OAuth、SAML和OpenID Connect的高层概念和流程。 - 在Salesforce社区中实施社交单点登录和认证机制。 - 解决Salesforce中的常见SSO故障。 - 制定有效的SSO策略以增强企业安全性。 - 在Salesforce中实施双因素认证(2FA)策略。 - 有效利用登录流程。 - 确定身份连接的合适使用案例。 - 应用合适的用户生命周期管理技术,包括自动化和即时供应。 考试信息: - 形式:60道多项选择/多选题,外加最多5道非计分题。 - 时长:120分钟。 - 及格分数:67%。 - 注册费用:400美元,加上适用税费。 - 重考费用:200美元,加上适用税费。 - 交付选项:在考试中心托管的监考考试或在线监考。 知识要求:考生在考试中不允许携带参考材料,无需了解Salesforce以外的特定IdP技术能力和获取签名证书。 考试大纲: - 身份管理概念:17% - 接受第三方身份的Salesforce:21% - Salesforce作为身份提供者:17% - 访问管理最佳实践:15% - Salesforce身份:12% - 社区(合作伙伴和客户):18% 该课程旨在帮助学员全面掌握Salesforce身份与访问管理架构师考试的相关知识和技能,为职业发展提供支持。

课程评论(0条)

课程详情

Salesforce Certified Identity and Access Management Architect CredentialThe Salesforce Certified Identity and Access Management Architect credential is for professionals aiming to validate their ability to assess identity architectures, design secure and efficient access management solutions on the Customer 360 platform, and communicate technical solutions to both business and technical stakeholders.Skills Required to Pass the ExamTo successfully pass the exam, candidates should be able to:Design identity architectures that integrate multiple platforms and support authentication across systems.Explain system design considerations, benefits, and provide recommendations for identity architecture.Implement best practices in identity and access management within Salesforce environments.Target Audience: Salesforce Certified Identity and Access Management ArchitectThis credential is ideal for individuals who evaluate environments and requirements to create secure, scalable identity management solutions on the Customer 360 platform. Professionals in this role have experience designing and implementing complex identity and access management strategies and can effectively communicate solution trade-offs to both business and technical stakeholders.Required BackgroundExperience:At least 1 year designing and implementing Identity and Access Management solutions within the Salesforce Customer 360 platform.Over 2 years in identity and/or security technologies.Typical Job Roles:Enterprise ArchitectTechnical ArchitectSecurity ArchitectIntegration ArchitectIdentity ArchitectSolution ArchitectKey CompetenciesCandidates should demonstrate the ability to:Differentiate between federated and delegated single sign-on (SSO).Gather requirements and configure delegated authentication and SAML in Salesforce.Understand the distinctions between Identity Provider (IdP) Initiated SAML and Service Provider (SP) Initiated SAML, and determine their appropriate use cases.Establish trust between IdPs and SPs.Assess identity federation capabilities for specific projects.Comprehend high-level concepts and flows of OAuth, SAML, and OpenID Connect.Implement social sign-on and authentication mechanisms for Communities in Salesforce.Troubleshoot common SSO failures in Salesforce.Develop effective SSO strategies to enhance enterprise security.Implement two-factor authentication (2FA) strategies in Salesforce.Utilize login flows effectively.Identify suitable use cases for Identity Connect.Apply appropriate user lifecycle management techniques, including automated and just-in-time provisioning.Areas Where Candidates May Need SupportWriting Apex codeNetworking and domain management related to IdentityConfiguring Salesforce for automated user lifecycle management through user provisioning and Connected AppsSetting up Salesforce to support social sign-on and registrationKnowledge Not RequiredSpecific IdP technology capabilities outside of SalesforceObtaining signed certificatesExam DetailsFormat: 60 multiple-choice/multiple-select questions, plus up to five non-scored questionsDuration: 120 minutesPassing Score: 67%Registration Fee: US$400, plus applicable taxesRetake Fee: US$200, plus applicable taxesDelivery Options: Proctored exam administered at a testing center or online with proctoringMaterials: No reference materials allowed during the examPrerequisites: NoneExam OutlineThe Salesforce Identity and Access Management Architect Exam measures a candidate's knowledge and skills related to the following objectives.Identity Management Concepts: 17%Describe common authentication patterns and understand the differences between each one.Describe the building blocks that are part of an identity solution (authentication, authorization, and accountability) and how you enable those building blocks using Salesforce features.Describe how trust is established between two systems.Given a scenario, recommend the appropriate method for provisioning users in Salesforce.Given a scenario, troubleshoot common points of failure that may be encountered in a single sign-on (SSO) solution (SAML, OAuth, etc.).Accepting Third-Party Identity in Salesforce: 21%Given a use case, describe when Salesforce is used as a Service Provider (SP).Given a scenario, recommend the most appropriate way to provision users from identity stores in business-to-employer (B2E) and business-to-consumer (B2C) scenarios.Given a scenario, recommend the appropriate authentication mechanism when Salesforce needs to accept third-party Identity (Enterprise Directory, Social, Community, etc.).Given a scenario, identify the ways to provision users in Salesforce to enable SSO and apply access rights.Given a scenario, identify the auditing and monitoring approaches available on the platform, and describe the tools available to diagnose Identity Provider (IdP) issues.Salesforce as an Identity Provider: 17%Given a scenario, identify the most appropriate OAuth flow (Web-based, JWT, User agent, Device auth flow).Given a scenario, recommend appropriate Scope and Configuration of the Connected App for Authorization.Describe the various implementation concepts of OAuth (scopes, secrets, tokens, refresh tokens, token expiration, token revocation, etc.).Given a scenario, recommend the Salesforce technologies that should be used to provide identity to the third-party system (Canvas, Connected Apps, App Launcher, etc.).Access Management Best Practices: 15%Given a set of requirements, determine the most appropriate methods of multi-factor authentication (MFA) to use, and the right type of session they should yield.Given a scenario, determine how to best assign roles, profiles, and permission sets to a user during the SSO process, how to keep these assignments up to date.Given a scenario, describe which tools you can apply to audit and verify the activity/user during and after login.Given a scenario, identify the configuration settings for a Connected App.Salesforce Identity: 12%Given a set of requirements, identify the role Identity Connect plays in a Salesforce Identity implementation.Given a scenario, identify if Salesforce Customer 360 Identity fits into a fully-developed Customer 360 solution.Give a set of requirements, recommend the most appropriate Salesforce license type(s).Community (Partner and Customer): 18%Describe the capabilities for customizing the user experience for Experience Cloud (Branding options, authentication options, identity verification self-registration, communications, password reset, etc.).Given a set of requirements, determine the best way to support external IdPs in communities and leverage the right user/contact model to support community user experience.Given a requirement, understand the advantages and limitations of External Identity solutions and associated licenses.Given a scenario, determine when to use embedded login.

课程标签

0人关注该课程

主题相关的课程