Exam Code: Identity-and-Access-Management-Architect
Exam Questions: 258
Salesforce Certified Platform Identity and Access Management Architect (Plat-Arch-203)
Updated: 15 Apr, 2026
Viewing Page : 1 - 26
Practicing : 1 - 5 of 258 Questions
Question 1

Universal Containers (UC) wants to implement SAML SSO for their internal of Salesforce users using a third-party IdP. After some evaluation, UC decides NOT to 65« set up My Domain for their Salesforce org. How does that decision impact their SSO implementation? 

Options :
Answer: B

Question 2

Universal Containers (UC) has an existing e-commerce platform and is implementing a new customer community. They do not want to force customers to register on both applications due to concern over the customers experience. It is expected that 25% of the e-commerce customers will utilize the customer community . The e-commerce platform is capable of generating SAML responses and has an existing REST-ful API capable of managing users. How should UC create the identities of its e-commerce users with the customer community? 

Options :
Answer: A

Question 3

Universal Containers is creating a mobile application that will be secured by Salesforce Identity using the
OAuth 2.0 user-agent flow. Application users will authenticate using username and password. They should not
be forced to approve API access in the mobile app or reauthenticate for 3 months.
Which two connected app options need to be configured to fulfill this use case?
Choose 2 answers

Options :
Answer: B,D

Question 4

Universal containers (UC) is building a mobile application that will make calls to the salesforce REST API.
Additionally UC would like to provide the optimal experience for its mobile users. Which two OAuth scopes
should UC configure in the connected App? Choose 2 answers

Options :
Answer: A,B

Question 5

Identity-and-Access-Management-Architect-page101-image4


An organization has a central cloud-based Identity and Access Management (IAM) Service for authentication
and user management, which must be utilized by all applications as follows:
1 - Change of a user status in the central IAM Service triggers provisioning or deprovisioining in the
integrated cloud applications.
2 - Security Assertion Markup Language single sign-on (SSO) is used to facilitate access for users
authenticated at identity provider (Central IAM Service).
Which approach should an IAM architect implement on Salesforce Sales Cloud to meet the requirements?

Options :
Answer: A

Viewing Page : 1 - 26
Practicing : 1 - 5 of 258 Questions

© Copyrights FreePDFQuestions 2026. All Rights Reserved

We use cookies to ensure that we give you the best experience on our website (FreePDFQuestions). If you continue without changing your settings, we'll assume that you are happy to receive all cookies on the FreePDFQuestions.