Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Exam Identity-and-Access-Management-Architect All Questions
Exam Identity-and-Access-Management-Architect All Questions

View all questions & answers for the Identity-and-Access-Management-Architect exam

Salesforce Identity and Access Management Designer Identity-and-Access-Management-Architect Question # 5 Topic 1 Discussion

Identity-and-Access-Management-Architect Exam Topic 1 Question 5 Discussion:
Question #: 5
Topic #: 1

Universal Containers (UC) has aclassified information system that its call center team uses only when they are working on a case with a record type "Classified". They are only allowed to access the system when they own an open "Classified" case, and their access to the system is removedat all other times. They would like to implement SAML SSO with Salesforce as the Idp, and automatically allow or deny the staff's access to the classified information system based on whether they currently own an open "Classified" case record when they try to access the system using SSO. What is the recommended solution for automatically allowing or denying access to the classified information system based on the open "classified" case record criteria?


A.

Use Salesforce reports to identify users that currently own open "Classified" cases and should be granted access to the Classified information system.


B.

Use Apex trigger on case to dynamically assign permission Sets that Grant access when a user is assigned with an open "Classified" case, and remove it when the case is closed.


C.

Use Custom SAML JIT Provisioning to dynamically query the user's open "Classified" cases when attempting to access the classified information system.


D.

Use a Common Connected App Handler using Apex to dynamically allow access tothe system based on whether the staff owns any open "Classified" Cases.


Get Premium Identity-and-Access-Management-Architect Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.