
Certified Information Systems Security Professional
Domain 5Objective 3
5.3 - Federated Identity with a Third-Party Service CISSP Practice Questions (Page 1)
Part of the Identity and Access Management (IAM) domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 2–3 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)
25questions here
5free pages
4concepts
13%of the exam
Questions 1–5
- 1
A startup has all its user identities in a cloud-based identity provider (e.g., Okta, Azure AD). They want to give their employees access to a new third-party project management tool that supports OIDC. What is the simplest way to enable SSO for this tool?
Select an answer first - 2
A company uses a cloud-based IdP and wants to allow its employees to access a third-party application that supports SAML. The company wants to enforce multi-factor authentication (MFA) for this application. Where should the MFA policy be configured?
Select an answer first - 3
An organization runs its identity management on an on-premises Active Directory (AD) and wants to enable single sign-on for employees to a third-party SaaS application that supports SAML 2.0. The organization does not want to store any passwords in the cloud. What should they implement?
Select an answer first - 4
Which component is essential when implementing federated identity with an on-premise identity provider?
Select an answer first - 5
What is the primary function of a trust relationship between an on-premise identity provider and a third-party service?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.