Summer Sale Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

SailPoint IdentityIQ-Engineer SailPoint Certified IdentityIQ Engineer Exam Practice Test

SailPoint Certified IdentityIQ Engineer Questions and Answers

Question 1

Is this statement true about the Application, Identity, ManageAttribute, Bundle, and Link objects in IdentitylQ?

Solution: An Application object is not required to aggregate external user account information into IdentitylQ.

Options:

A.

Yes

B.

No

Question 2

Can the search type in Syslog be used to accomplish this result?

Solution: Identifying details of a system error presented in the Ul

Options:

A.

Yes

B.

No

Question 3

Can an Escalation Rule be used to handle this scenario?

Solution: Automatically reassign parts of an access review to a different certifier.

Options:

A.

Yes

B.

No

Question 4

Is the following true of Identity Provisioning Policies?

Proposed Solution:

If no Update Identity Provisioning Policy is defined for the installation, the Create Identity Provisioning Policy will be used in Edit Identity operations.

Options:

A.

Yes

B.

No

Question 5

An engineer is developing an instance of IdentitylQ using the Services Standard Build (SSB) for a client. Is this a valid action the engineer can perform when setting up or using the SSB?

Solution: Place the client ' s identityiq. War file in the home directory of the build.

Options:

A.

Yes

B.

No

Question 6

A client wants users who belong to an IdentitylQ workgroup named Management to be able to request entitlements and roles, but only for other users whose location attribute is the same as theirs.

Is this a population that will achieve the goal?

Solution: Create a quicklink population, set the membership match list to the IdentitylQ workgroup " Management, " and set " Who can members request for? " as report to the requester.

Options:

A.

Yes

B.

No

Question 7

Is the following true of Identity Provisioning Policies?

Proposed Solution:

A self-service Registration Identity Provisioning Policy is required to support the self-service registration workflow (LCM Registration).

Options:

A.

Yes

B.

No

Question 8

Is this a default functionality of the Lifecycle Manager (LCM) module?

Proposed Solution:

Launch Certification Campaign

Options:

A.

Yes

B.

No

Question 9

Can the following IdentityIQ object be extended to store client-specific data by updating the corresponding .HBM file?

Proposed Solution:

Bundle

Options:

A.

Yes

B.

No

Question 10

Is this statement true about identitylQ ' s syslog event storage?

Solution: To improve security, items logged through syslog are unable to be sent to Log4j.

Options:

A.

Yes

B.

No

Question 11

Can the search type in Syslog be used to accomplish this result?

Solution: Identifying the number of employees that report to a specific person

Options:

A.

Yes

B.

No

Question 12

Assuming that the policy violation owner has the necessary permissions, is this a valid option for the policy violation owner to use when acting on a policy violation of type ' Account Policy ' ?

Proposed Solution:

Schedule Policy Composition Certification

Options:

A.

Yes

B.

No

Question 13

An engineer is assigned to configure an identity attribute. The requirements are:

Purpose: Add a user ' s security clearance to their identity

Read from: Workday; if not found in Workday, Contractor file; otherwise, leave empty

Usage 1: Display as option in Advanced Analytics

Usage 2: Use when writing rules

Usage 3: Can be updated through the Edit Identity Quicklink, but Workday is authoritative

Usage 4: List as entitlement on Identity Cubes

Does the engineer need to set this configuration option on the identity attribute to meet the requirements?

Proposed Solution:

Entitlement

Options:

A.

Yes

B.

No

Question 14

Is the following statement true about out-of-the-box reporting?

Proposed Solution:

All IdentityIQ report results are stored on IdentityIQ application servers.

Options:

A.

Yes

B.

No

Question 15

Can the Environment tab under ‘Administrator Console’ be used to do the following task?

Proposed Solution:

View status of installed SailPoint modules/extensions.

Options:

A.

Yes

B.

No

Question 16

Can the Provisioning tab under " Administrator Console ' be used to do the following task?

Solution: Manually retry the provisioning attempt for pending transactions.

Options:

A.

Yes

B.

No

Question 17

Is this a purpose of an IdentitylQ certification?

Solution: to attest to a user ' s integrity

Options:

A.

Yes

B.

No

Question 18

Is this a true statement about localization support in IdentitylQ?

Solution: Localized messages can be retrieved from custom Java/BeanShell code using SailPoint APIs.

Options:

A.

Yes

B.

No

Question 19

The JVM Memory page on IdentitylQ displays the following information:

Question # 19

Solution: How much memory is currently allocated to the JVM heap?

Type your numerical response into the box below.

Options:

Question 20

Is this where email templates can be viewed after product installation?

Proposed Solution:

In the Debug page as an EmailTemplate object.

Options:

A.

Yes

B.

No

Question 21

Can the following be achieved via configuration of control variables in the out-of-the-box Lifecycle Manager (LCM) workflows?

Solution: Specify which access items may be requested.

Options:

A.

Yes

B.

No

Question 22

Is this statement correct about writing and executing source mapping rules to populate identity attributes?

Solution: The rule type must be IdentityAttribute.

Options:

A.

Yes

B.

No

Question 23

Is this statement true about the IdentitylQ Audit functionality and/or options?

Solution: The built-in auditing options are immutable; they are always recorded. However, custom audits can be turned on or off.

Options:

A.

Yes

B.

No

Question 24

Can the search type in Identity be used to accomplish this result?

Proposed Solution:

Identifying details of a system error presented in the UI

Options:

A.

Yes

B.

No

Question 25

Is the following statement true about out-of-the-box reporting?

Solution: In the Reporting user interface, instances of reports are located on the ' My Reports ' tab, and templates are located on the ' Reports ' tab.

Options:

A.

Yes

B.

No

Question 26

Is the following statement true?

Solution: Every Link object must be associated to an Identity object

Options:

A.

Yes

B.

No

Question 27

Can this be achieved using Rapid Setup user interface configuration options?

Solution: Reassign all object ownership to the user ' s manager during Leaver and Termination events.

Options:

A.

Yes

B.

No

Question 28

Is the following statement true?

Proposed Solution:

All ManagedAttribute objects associated to an Identity can be viewed on the ‘Policy’ tab from ‘View Identity’ QuickLink.

Options:

A.

Yes

B.

No

Question 29

IdentitylQ is using emails to notify users about completion of steps within a process, or actions that need to be addressed.

To ensure this notification is working, a main configuration must be set up in IdentitylQ to provide mail server and mail server authentication details.

Is this a required setting that an engineer must set up in IdentitylQ in order to ensure successful communication with the SMTP server?

Solution: Email Protocol

Options:

A.

Yes

B.

No

Question 30

Is the following true of Identity Provisioning Policies?

Solution: The Create Identity Provisioning Policy will be applied to identity creation during aggregation from an authoritative source so that identities will be created with valid/authorized attribute values.

Options:

A.

Yes

B.

No

Question 31

Is this a valid step to take when importing SailPoint XML file objects into IdentitylQ?

Solution: Move the XML file into the IIQ_HOME/WEB-INF/database.

Options:

A.

Yes

B.

No

Question 32

Can a Workgroup be used for the following scenario?

Solution: Providing a group of users with specific capabilities.

Options:

A.

Yes

B.

No

Question 33

Is this statement valid regarding the control and usability of the Debug pages in IdentitylQ?

Solution: The Debug-Logging page does not have to be reloaded when the log4j file is altered while the application server is running.

Options:

A.

Yes

B.

No

Question 34

Is this statement true about identitylQ ' s syslog event storage?

Solution: IdentitylQ logging events are stored in a database table in addition to log files.

Options:

A.

Yes

B.

No

Question 35

Is the following statement about workflows and sub-workflows (subprocesses) true?

Proposed Solution:

The outputs of a subprocess (sub-workflow) can be returned to variables in the calling workflow using the returns attribute of the calling step.

For example:

< Step icon= " Task " name= " Initialize " posX= " 134 " posY= " 10 "

returns= " identityRequestId,project " send= " identityName,plan " >

...

Options:

A.

Yes

B.

No

Question 36

An implementation engineer needs to perform an upgrade of IdentitylQ between releases. Is the following statement true?

Solution: Supported platforms of an older version of IdentitylQ will always be supported in newer versions of IdentitylQ.

Options:

A.

Yes

B.

No

Question 37

Assuming that the policy violation owner has the necessary permissions, is this a valid option for the policy violation owner to use when acting on a policy violation of type ' Role SOD Policy?

Solution: Schedule Policy Composition Certification

Options:

A.

Yes

B.

No

Question 38

The engineer needs to write some ad-hoc BeanShell code to search for GroupDefmition objects owned by Randy.Knight and print their names. Is this BeanShell code correct as written?

Solution:

Question # 38

Options:

A.

Yes

B.

No

Question 39

Is this a purpose of an IdentitylQ certification?

Solution: to attest lo a user ' s system access

Options:

A.

Yes

B.

No

Question 40

An engineer needs to trigger a workflow when a Division attribute changes from IT to Senior IT, but only when the user is a manager.

Is this a valid process that the engineer could use to launch a workflow for a lifecycle event?

Proposed Solution:

Create a trigger with an event type of rule that checks if the previous value is IT and the new value is Senior IT, and return true if the managerStatus on the user ' s Identity Cube is true.

Options:

A.

Yes

B.

No

Question 41

A client wants users who belong to an IdentitylQ workgroup named Management to be able to request entitlements and roles, but only for other users whose location attribute is the same as theirs.

Is this a population that will achieve the goal?

Solution: Create a quicklink population, set the membership match list to " All, " and set " Who can members request for? ' ' as share attributes with the requester, with the attribute set to location. '

Options:

A.

Yes

B.

No

Question 42

An engineer needs to first create a custom audit event and then set up an associated report.

What are four steps to accomplish this goal?

Proposed Solution:

Set up a new AuditAction in the AuditConfig object XML:

< ObjectAttribute displayName= " User Type " editMode= " Permanent " extendedNumber= " 2 " name= " userType " type= " string " / >

Options:

A.

Yes

B.

No

Question 43

An engineer needs to first create a custom audit event and then set up an associated report. What are four steps to accomplish this goal?

Solution: Create a Data Export task.

Options:

A.

Yes

B.

No

Question 44

Can the rule library named Common Rules Library " be included in a Rule by adding this code?

Solution:

Question # 44

Options:

A.

Yes

B.

No

Question 45

Can the rule library named Common Rules Library " be included in a Rule by adding this code?

Solution:

Question # 45

Options:

A.

Yes

B.

No

Question 46

A manager wants to extend the access granted to an employee.

Is this a default role type that is available for the manager to request in IdentityIQ during the access request process?

Proposed Solution:

HR Role

Options:

A.

Yes

B.

No

Question 47

Is the following statement about workflows and sub-workflows (subprocesses) true?

Proposed Solution:

Many standard LCM sub-workflows can be leveraged in custom workflows, with their behavior controlled via input variables.

Options:

A.

Yes

B.

No

Question 48

Is this statement valid regarding the control and usability of the Debug pages in IdentityIQ?

Proposed Solution:

Objects can be deleted on a singular basis or in bulk.

Options:

A.

Yes

B.

No

Question 49

Is this a purpose of an IdentityIQ certification?

Proposed Solution:

to ensure SailPoint is in compliance with the ISO 9001 government regulation

Options:

A.

Yes

B.

No

Question 50

An engineer needs to first create a custom audit event and then set up an associated report. What are four steps to accomplish this goal?

Solution:

Question # 50

Options:

A.

Yes

B.

No

Question 51

Is this statement valid regarding the control and usability of the Debug pages in IdentitylQ?

Solution: The application server must be restarted after reloading the logging file through the Debug-Logging page.

Options:

A.

Yes

B.

No

Question 52

An engineer needs to first create a custom audit event and then set up an associated report.

What are four steps to accomplish this goal?

Proposed Solution:

Write logic in a BeanShell rule, task, or workflow step to created the audit event, populated with the appropriate data values.

Options:

A.

Yes

B.

No

Question 53

Can the search type in Syslog be used to accomplish this result?

Solution: Launching a certification using the search results

Options:

A.

Yes

B.

No

Question 54

The engineer uses the sailpoint.api.IdentityService in a BeanShell method to look up and return all account names for an identity on the application ' MagicBox ' . Is this a correct implementation?

Proposed Solution:

import sailpoint.api.IdentityService;

import sailpoint.api.SailPointContext;

import sailpoint.object.Application;

import sailpoint.object.Identity;

import sailpoint.object.Link;

import sailpoint.tools.GeneralException;

public List getAccountNames(SailPointContext context, Identity identity) throws GeneralException {

Application application = context.getObjectByName(Application.class, " MagicBox " );

IdentityService service = new IdentityService(context);

List < String > accountNames = new ArrayList < String > ();

List < Link > links = service.getLinks(identity, application);

if (links != null) {

for (Link link : links) {

accountNames.add(link.getNativeIdentity());

}

}

return accountNames;

}

Options:

A.

Yes

B.

No

Question 55

Is the following statement about IdentityIQ rule inputs and outputs correct?

Proposed Solution:

Every BeanShell rule in IdentityIQ rule must produce output.

Options:

A.

Yes

B.

No

Question 56

Is this an example of a joiner lifecycle event?

Proposed Solution:

A contractor whose contract expired and accounts were disabled has a new contract with the company; the contractor needs all of their previous accounts enabled.

Options:

A.

Yes

B.

No

Question 57

Is the following a true statement about IdentitylQ authentication and authorization?

Solution: What users can see and do in IdentitylQ can be party controlled by their authorized scope.

Options:

A.

Yes

B.

No

Question 58

Is this statement correct about writing and executing source mapping rules to populate identity attributes?

Solution: All Identity Mappings must use a rule to set the identity attribute.

Options:

A.

Yes

B.

No

Question 59

Can this action be performed as part of configuring an application definition in IdentitylQ?

Solution: Specify which users should be provisioned with a basic account as part of a joiner event.

Options:

A.

Yes

B.

No