2026年にSalesforce Certified Identity and Access Management Designerへの挑戦をお考えなら、JPNTestにお任せください。Identity-and-Access-Management-Designerの245の練習問題に加え、無料サンプルや365日間の無料更新、返金保証まで、学習から購入後のサポートまで一貫してご提供しています。
Salesforce Identity-and-Access-Management-Designer 試験概要:
| 認定ベンダー: | Salesforce |
|---|---|
| 試験名: | Salesforce認定 アイデンティティ・アクセス管理デザイナー試験 |
| 試験番号: | Identity-and-Access-Management-Designer |
| 受験料: | 米ドル400(再受験:米ドル200、別途該当する税金が加算されます) |
| 認定の有効期間: | 1年間(年次更新手続きが必要) |
| 出題数: | 60 |
| 関連資格: | Salesforce認定 セキュリティ・アクセス管理スペシャリスト資格 Salesforce認定 プラットフォームアイデンティティ・アクセス管理アーキテクト資格 |
| 試験形式: | 単一選択式問題, 複数選択式問題, シナリオ設定型問題 |
| 合格点: | 65% |
| 対応言語: | English |
| 試験時間: | 120 分 |
| 推奨トレーニング: | 公式試験ガイド Trailhead 学習パック:アイデンティティ・アクセス管理 |
| 受験申し込み: | Salesforce 認定資格ポータル Pearson VUE 受験登録ページ |
| サンプル問題: | Salesforce Identity-and-Access-Management-Designer サンプル問題 |
| 受験方法: | オンライン監視付き受験、またはPearson VUEの試験会場での受験 |
| 前提条件: | 受験に必須の前提資格はありません。推奨される経験・知識として、Salesforce認定アドミニストレーター資格の保有、SSO・OAuth・SAMLの実務経験、Salesforceのセキュリティ機能に関する実務経験が挙げられます。 |
| 公式シラバスのURL: | https://developer.salesforce.com/resources2/certification-site/files/SGCertifiedIdentityAndAccessManagementDesigner.pdf |
Salesforce Identity-and-Access-Management-Designer 試験シラバストピック:
| セクション | 比重 | 目標 |
|---|---|---|
| トピック 1: Salesforceアイデンティティ機能 | 7% | - My Domainの設定手順 - 接続アプリケーションの管理方法 - Identity Connectの機能概要 |
| トピック 2: Salesforceにおける外部アイデンティティの受け入れ | 22% | - ユーザープロビジョニングとジャストインタイムプロビジョニング - 外部IdP向けの認証方式 - SP開始型SAMLとIdP開始型SAMLの違い - 委譲認証の実装方法 |
| トピック 3: Salesforceをアイデンティティプロバイダーとして利用する | 23% | - セッションのセキュリティポリシー - OpenID Connectの実装方法 - 多要素認証と高信頼度セッション - 各種OAuthフロー(User Agent、Web Server、JWTなど) |
| トピック 4: コミュニティ(パートナー・顧客向け)のアイデンティティ管理 | 5% | - 外部ユーザーの登録とログイン機能 - コミュニティで利用可能な認証方式 - ブランド設定とアイデンティティ画面のカスタマイズ |
| トピック 5: アイデンティティ管理の基礎概念 | 28% | - IdP(アイデンティティプロバイダー)とSP(サービスプロバイダー)の役割 - SSOのトラブルシューティングと障害発生箇所の特定 - 連携SSOにおけるリスクとその対策 - SAML、OAuth、OpenID Connectの各プロトコル |
| トピック 6: アクセス管理のベストプラクティス | 15% | - セキュリティポリシーの適用と運用 - コンプライアンス対応とリスクの軽減策 - アイデンティティ要件に応じたライセンス種別の選定 - プロファイル、権限セット、ロール、共有設定の管理 |
Salesforce Certified Identity and Access Management DesignerのQ&A
「Identity-and-Access-Management-Designer」は、Salesforceが実施する「Salesforce認定 アイデンティティ・アクセス管理デザイナー試験」の試験コードです。この試験に合格すると、「Salesforce認定 アイデンティティ・アクセス管理デザイナー資格」の認定を取得できます。認定レベルはデザイナーレベルに位置づけられています。関連する認定としては、Salesforce認定 プラットフォームアイデンティティ・アクセス管理アーキテクト資格・Salesforce認定 セキュリティ・アクセス管理スペシャリスト資格などが挙げられます。JPNTestでは、Identity-and-Access-Management-Designer試験対策として245の練習問題をご用意しています。
Identity-and-Access-Management-Designer試験の出題数は60、制限時間は120 分です。限られた時間内で全問に取り組む必要があるため、1問にかけられる時間を常に意識し、難しい問題に長く留まりすぎないペース配分が求められます。本番で時間不足に慌てないよう、JPNTestのテストエンジンで制限時間つきの模擬試験に挑戦し、時間配分の感覚を体に覚えさせておくことをおすすめします。
Identity-and-Access-Management-Designer試験の合格ラインは65%、受験料は米ドル400(再受験:米ドル200、別途該当する税金が加算されます)です。万が一不合格だった場合、再受験には改めて全額の受験料が必要になるため、費用面の負担も無視できません。受験前にJPNTestの245の練習問題で模擬試験に取り組み、安定して合格ラインを超えられることを確認してから本番に臨むと安心です。
受験に必須の前提資格はありません。推奨される経験・知識として、Salesforce認定アドミニストレーター資格の保有、SSO・OAuth・SAMLの実務経験、Salesforceのセキュリティ機能に関する実務経験が挙げられます。
受験条件は変更される場合があります。最新かつ正確な情報は、Salesforceの公式ページで必ずご確認ください。
Identity-and-Access-Management-Designer試験は、以下の公式窓口からお申し込みいただけます。
なお、本試験の受験方式はオンライン監視付き受験、またはPearson VUEの試験会場での受験です。
SalesforceではIdentity-and-Access-Management-Designer試験向けに、以下の公式トレーニングを用意しています。
公式トレーニングで知識の土台を固めたうえで、JPNTestの245の練習問題に取り組めば、理解度の確認と弱点の洗い出しを効率よく進められます。
はい、ご購入前にJPNTestのIdentity-and-Access-Management-Designer問題集の無料サンプル(PDFデモ)をダウンロードして、問題の品質や形式をご確認いただけます。ご購入後は365日間の無料更新が付帯し、更新期間の終了後も50%割引で継続更新をご利用いただけるため、常に最新の出題傾向に沿った内容で学習を続けられます。
JPNTestでは「返金保証」制度をご用意しています。ご購入後60日以内にIdentity-and-Access-Management-Designer試験を受験して不合格となった場合、全額返金をご申請いただけます。なお、ご購入後3日以内の受験や、ダウンロード後に実際の受験をしていない場合、無料資料や期限切れのご注文は対象外となり、受験者氏名とお支払い者氏名が一致している必要があります。ご申請の際は、受験票(enrollment slip)の写しと公式スコアレポート(Score Report)のPDFを試験後2日以内にご提出いただき、受理後7日以内に手続きが完了します。返金をご希望でない場合は、同等価値の試験資料2点を無料でお受け取りいただき、元の製品の更新サービスを継続する選択肢もございます。
また、ご購入いただいた製品はお支払い完了後すぐにダウンロードでき、メールでも1分以内にお届けします。2時間以内に届かない場合はカスタマーサポートまでご連絡ください。インストール可能なパソコンの台数に制限はありません。
Identity-and-Access-Management-Designer試験の出題範囲は、全部で6分野で構成されています。主な分野としては、「アイデンティティ管理の基礎概念」(28%)、「Salesforceにおける外部アイデンティティの受け入れ」(22%)、「Salesforceをアイデンティティプロバイダーとして利用する」(23%)などが挙げられます。各分野の詳細なトピックと配点は、上記の試験大綱をご確認ください。JPNTestのIdentity-and-Access-Management-Designer練習問題は、これらの出題分野を幅広くカバーしています。
Salesforce Certified Identity and Access Management Designer 認定 Identity-and-Access-Management-Designer 試験問題:
問題 #1
Northern Trail Outfitters (NTO) has an off-boarding process where a terminated employee is first disabled in the Lightweight Directory Act Protocol (LDAP) directory, then requests are sent to the various application support teams to finish user deactivations. A terminated employee recently was able to login to NTO's Salesforce instance 24 hours after termination, even though the user was disabled in the corporate LDAP directory.
What should an identity architect recommend to prevent this from happening in the future?
A. use a login flow to make a callout to the LDAP directory before authenticating the user to Salesforce.
B. Create a Just-in-Time provisioning registration handler to ensure users are deactivated in Salesforce as they are disabled in LDAP.
C. Setup an identity provider (IdP) to authenticate users using LDAP, set up single sign-on to Salesforce and disable Login Form authentication.
D. Configure an authentication provider to delegate authentication to the LDAP directory.
問題 #2
A global company is using the Salesforce Platform as an Identity Provider and needs to integrate a third-party application with its Experience Cloud customer portal.
Which two features should be utilized to provide users with login and identity services for the third-party application?
Choose 2 answers
A. Use the App Launcher with single sign-on (SSO).
B. Use a connected app.
C. External a Data source with Named Principal identity type.
D. Use Delegated Authentication.
問題 #3
Universal Containers (UC) is planning to add Wi-Fi enabled GPS tracking devices to its shipping containers so that the GPS coordinates data can be sent from the tracking device to its Salesforce production org via a custom API. The GPS devices have no direct user input or output capabilities.
Which OAuth flow should the identity architect recommend to meet the requirement?
A. OAuth 2.0 JWT Bearer Flow for Server-to-Server Integration
B. OAuth 2.0 Web Server Flow for Web App Integration
C. OAuth 2.0 Username-Password Flow for Special Scenarios
D. OAuth 2.0 Asset Token Flow for Securing Connected Devices
問題 #4
After a recent audit, universal containers was advised to implement Two-factor Authentication for all of their critical systems, including salesforce. Which two actions should UC consider to meet this requirement? Choose 2 answers
A. Require users to provide their RSA token along with their credentials.
B. Require users to supply their email and phone number, which gets validated.
C. Require users to use a biometric reader as well as their password
D. Require users to enter a second password after the first Authentication
問題 #5
IT security at Unversal Containers (UC) us concerned about recent phishing scams targeting its users and wants to add additional layers of login protection. What should an Architect recommend to address the issue?
A. Implement Single Sign-on using a corporate Identity store.
B. Increase Password complexity requirements in Salesforce.
C. Lock sessions to the IP address from which they originated.
D. Use the Salesforce Authenticator mobile app with two-step verification
解説:
| 問題 #1 正解: D | 問題 #2 正解: A、B | 問題 #3 正解: D | 問題 #4 正解: A、C | 問題 #5 正解: D |
438 お客様のコメント
クリック」



