SailPoint IdentityIQ-Engineer Exam
SailPoint Certified IdentityIQ Engineer (Page 3 )

Updated On: 7-Feb-2026

Assuming that the policy violation owner has the necessary permissions, is this a valid option for the policy violation owner to use when acting on a policy violation of type 'Role SOD Policy?

Solution: Schedule Policy Composition Certification

  1. Yes
  2. No

Answer(s): B

Explanation:

In SailPoint IdentityIQ, when dealing with a policy violation of the type "Role Separation of Duties

(SOD) Policy," there are specific actions that the policy violation owner can take. These options typically include:

Mitigate: Applying a mitigating control to the violation.

Remediate: Addressing the violation by removing or altering access.

Accept: Acknowledging the violation without making changes, which usually requires justification.

Forward: Assigning the violation to another individual or group for resolution.

The option "Schedule Policy Composition Certification" is not a valid action for addressing a Role SOD

Policy violation directly. The concept of scheduling a certification is related to periodic review processes, not immediate policy violation handling. Certification campaigns are scheduled and executed to review roles, entitlements, or policies, but this is not an action taken in response to a specific policy violation.

Thus, "Schedule Policy Composition Certification" is not an appropriate or valid option in this context, and the correct answer is B. No.


Reference:

This explanation is corroborated by the SailPoint IdentityIQ Compliance Manager documentation, which outlines the various actions available to policy violation owners when responding to policy violations, including Role SOD policies. The documentation specifies the actions that can be taken, and scheduling a certification is not listed among them in this context.



Is this configuration option required when an engineer sets up a SCIM 2.0 application?

Solution: Comment Character

  1. Yes
  2. No

Answer(s): B

Explanation:

The configuration option "Comment Character" is not required when setting up a SCIM 2.0 application in SailPoint IdentityIQ. The "Comment Character" option is generally used for handling comment lines in flat files or CSV file-based connectors. Since SCIM 2.0 is a RESTful API-based protocol designed for managing identities in a standardized way, this option does not apply to SCIM 2.0 integrations. Therefore, it is not a necessary configuration when working with SCIM 2.0 applications.


Reference:

SailPoint IdentityIQ SCIM 2.0 Integration Guide

SailPoint IdentityIQ Application Configuration Guide (SCIM and REST API sections)



Is this configuration option required when an engineer sets up a SCIM 2.0 application?

Solution: Name

  1. Yes
  2. No

Answer(s): A

Explanation:

The "Name" configuration option is required when setting up a SCIM 2.0 application in SailPoint IdentityIQ. The "Name" field is a mandatory identifier for the application within IdentityIQ. This name is used throughout the system to reference the application and is critical for configuration, management, and integration processes. Without specifying a name, IdentityIQ cannot properly identify and interact with the SCIM 2.0 application.


Reference:

SailPoint IdentityIQ SCIM 2.0 Application Configuration Guide

SailPoint IdentityIQ Administration Guide (Application Setup and Naming Conventions)



Is this statement true about the Application, Identity, ManageAttribute, Bundle, and Link objects in IdentitylQ?

Solution: An Application object is not required to aggregate external user account information into IdentitylQ.

  1. Yes
  2. No

Answer(s): B

Explanation:

The statement that "An Application object is not required to aggregate external user account information into IdentityIQ" is false. In SailPoint IdentityIQ, an Application object is essential for aggregating (importing) external user account information. The Application object defines the connection settings, schema, and mapping that enable IdentityIQ to connect to external systems and retrieve identity data. Without an Application object, IdentityIQ would not have the necessary configuration to establish a connection and aggregate user data from external sources.


Reference:

SailPoint IdentityIQ Administration Guide (Section on Applications and Aggregation)

SailPoint IdentityIQ Integration and Configuration Guide



HOTSPOT (Drag and Drop is not supported)

Match the following IdentitylQ console commands To their functions.

Use the drop-down menus to select your answers. Answer options from the drop-down menus may only be used once Some will not be used at all.



  1. See Explanation for the Answer.

Answer(s): A

Explanation:

Here's how the SailPoint IdentityIQ console commands correspond to their respective functions:

connectorDebug: debug the connector to identify issues in the connector.

source: authenticate to IdentityIQ as another user.

list: list objects.

provision: evaluate and execute a provisioning plan.

Comprehensive Detailed Explanation with All IdentityIQ Engineer Reference connectorDebug:

This command is primarily used to debug connectors within IdentityIQ. Connectors facilitate communication between SailPoint and external systems.
When an issue arises, you use this function to identify and troubleshoot connector-related problems.


Reference:

SailPoint IdentityIQ Console Guide (section on connector troubleshooting).

source:

This command allows you to authenticate as another user within the IdentityIQ system. It's useful for testing user-specific actions or behaviors without logging out and back in.


SailPoint IdentityIQ Admin Guide (section on user authentication and delegation).

list:

This function returns a list of objects or entities within the system. In IdentityIQ, objects could include applications, roles, policies, and more.


SailPoint IdentityIQ Console Reference Guide (list and query commands).

provision:

The provision command evaluates and executes a provisioning plan. This is the actual process that implements changes in user access across connected systems based on the identity lifecycle event.

SailPoint IdentityIQ Provisioning Guide (execution of provisioning plans).

By matching these commands to their respective functions, the detailed functionalities of IdentityIQ's console tools are properly understood for administrative and troubleshooting purposes.






Post your Comments and Discuss SailPoint IdentityIQ-Engineer exam prep with other Community members:

Join the IdentityIQ-Engineer Discussion