2026年のSalesforce Certified Identity and Access Management Designer(Identity-and-Access-Management-Designer)対策は、学習から模擬試験までShikenPASSひとつで完結します。245問の練習問題と充実したサポートで、合格までの道のりを一貫して支えます。
Salesforce Identity-and-Access-Management-Designer 試験概要:
| 認定ベンダー: | Salesforce |
|---|---|
| 試験名: | Salesforce認定 アイデンティティ・アクセス管理デザイナー試験 |
| 試験番号: | Identity-and-Access-Management-Designer |
| 試験形式: | 単一選択式問題, シナリオ設定型問題, 複数選択式問題 |
| 対応言語: | English |
| 認定の有効期間: | 1年間(年次更新手続きが必要) |
| 試験時間: | 120 分 |
| 合格点: | 65% |
| 出題数: | 60 |
| 関連資格: | Salesforce認定 プラットフォームアイデンティティ・アクセス管理アーキテクト資格 Salesforce認定 セキュリティ・アクセス管理スペシャリスト資格 |
| 受験料: | 米ドル400(再受験:米ドル200、別途該当する税金が加算されます) |
| 推奨トレーニング: | 公式試験ガイド Trailhead 学習パック:アイデンティティ・アクセス管理 |
| 受験申し込み: | Salesforce 認定資格ポータル Pearson VUE 受験登録ページ |
| サンプル問題: | DOWNLOAD DEMO |
| 受験方法: | オンライン監視付き受験、またはPearson VUEの試験会場での受験 |
| 前提条件: | 受験に必須の前提資格はありません。推奨される経験・知識として、Salesforce認定アドミニストレーター資格の保有、SSO・OAuth・SAMLの実務経験、Salesforceのセキュリティ機能に関する実務経験が挙げられます。 |
| 公式シラバスのURL: | https://developer.salesforce.com/resources2/certification-site/files/SGCertifiedIdentityAndAccessManagementDesigner.pdf |
Salesforce Identity-and-Access-Management-Designer 試験シラバストピック:
| セクション | 比重 | 目標 |
|---|---|---|
| Salesforceをアイデンティティプロバイダーとして利用する | 23% | - OpenID Connectの実装方法 - 多要素認証と高信頼度セッション - 各種OAuthフロー(User Agent、Web Server、JWTなど) - セッションのセキュリティポリシー |
| Salesforceにおける外部アイデンティティの受け入れ | 22% | - SP開始型SAMLとIdP開始型SAMLの違い - 委譲認証の実装方法 - 外部IdP向けの認証方式 - ユーザープロビジョニングとジャストインタイムプロビジョニング |
| アクセス管理のベストプラクティス | 15% | - アイデンティティ要件に応じたライセンス種別の選定 - セキュリティポリシーの適用と運用 - プロファイル、権限セット、ロール、共有設定の管理 - コンプライアンス対応とリスクの軽減策 |
| アイデンティティ管理の基礎概念 | 28% | - 連携SSOにおけるリスクとその対策 - SSOのトラブルシューティングと障害発生箇所の特定 - IdP(アイデンティティプロバイダー)とSP(サービスプロバイダー)の役割 - SAML、OAuth、OpenID Connectの各プロトコル |
| Salesforceアイデンティティ機能 | 7% | - Identity Connectの機能概要 - 接続アプリケーションの管理方法 - My Domainの設定手順 |
| コミュニティ(パートナー・顧客向け)のアイデンティティ管理 | 5% | - コミュニティで利用可能な認証方式 - ブランド設定とアイデンティティ画面のカスタマイズ - 外部ユーザーの登録とログイン機能 |
Salesforce Certified Identity and Access Management Designerの疑問を解決するFAQ
Identity-and-Access-Management-Designer試験は、Salesforceが実施する公式の認定試験で、合格すると「Salesforce認定 アイデンティティ・アクセス管理デザイナー資格」の認定を取得できます。この認定はデザイナーレベルレベルに位置づけられています。関連する認定資格にはSalesforce認定 プラットフォームアイデンティティ・アクセス管理アーキテクト資格、Salesforce認定 セキュリティ・アクセス管理スペシャリスト資格などがあります。詳しい試験情報は、このページの試験概要やほかの質問項目でもご紹介しています。
Identity-and-Access-Management-Designer試験の問題数は60、制限時間は120 分です。限られた時間で全問を解き切るには、1問ごとのペースを意識し、難しい問題に時間を使いすぎない進め方が重要です。ShikenPASSのテストエンジンには時間制限付きの模擬試験モードがあるため、本番と同じ時間配分で245問の練習問題に取り組めます。受験直前には、必ず時間を計った通し演習で時間感覚を確認しておきましょう。
Identity-and-Access-Management-Designer試験の合格に必要なスコアは65%、受験料は米ドル400(再受験:米ドル200、別途該当する税金が加算されます)です。万が一不合格になった場合、再受験には受験料を再度全額支払う必要があるため、本番前の仕上がり確認が欠かせません。ShikenPASSの練習問題で模擬試験を繰り返し、安定して合格点を上回る状態になってから受験することをおすすめします。
はい。ShikenPASSではSalesforce Certified Identity and Access Management Designer(Identity-and-Access-Management-Designer)問題集の無料サンプルをご用意しており、購入前に内容や品質をご確認いただけます。また、ご購入後は365日間無料で最新版にアップデートでき、更新期間終了後の更新も50%割引でご利用いただけます。
ShikenPASSでは「返金保証」をご用意しています。ご購入後60日以内にIdentity-and-Access-Management-Designer試験を受験して不合格だった場合、受験票の写しと公式スコアレポート(Score Report)のPDFを試験後2日以内にご提出いただければ、7日以内に全額返金の手続きが完了します。なお、ご購入後3日以内の受験や、実際に受験されなかった場合、無料資料・期限切れのご注文は対象外となり、受験者名とお支払い者名の一致が必要です。返金の代わりに、同等の試験資料2点を無料でお受け取りいただき、元の製品の更新サービスを継続することも可能です。商品はお支払い完了後すぐにダウンロードでき、1分以内にメールでもお届けします。2時間経っても届かない場合はカスタマーサポートまでご連絡ください。インストールできるパソコンの台数に制限はありません。
Identity-and-Access-Management-Designer試験の出題範囲は、公式の発表では全部で6の分野に分かれています。主な分野としては、「コミュニティ(パートナー・顧客向け)のアイデンティティ管理」(5%)、「Salesforceアイデンティティ機能」(7%)、「Salesforceをアイデンティティプロバイダーとして利用する」(23%)などが挙げられます。各分野に含まれる詳細なトピックは、上記の試験範囲一覧でご確認ください。
Salesforce Certified Identity and Access Management Designer 認定 Identity-and-Access-Management-Designer 試験問題:
Universal Containers (UC) built an integration for their employees to post, view, and vote for ideas in Salesforce from an internal Company portal. When ideas are posted in Salesforce, links to the ideas are created in the company portal pages as part of the integration process. The Company portal connects to Salesforce using OAuth. Everything is working fine, except when users click on links to existing ideas, they are always taken to the Ideas home page rather than the specific idea, after authorization. Which OAuth URL parameter can be used to retain the original requested page so that a user can be redirected correctly after OAuth authorization?
- A. Redirect_uri
- B. Scope
- C. Callback_uri
- D. State
正解:A 🗳️
Northern Trail Outfitters is implementing a busmess-to-business (B2B) collaboration site using Salesforce Experience Cloud. The partners will authenticate with an existing identity provider and the solution will utilize Security Assertion Markup Language (SAML) to provide single sign-on to Salesforce. Delegated administration will be used in the Expenence Cloud site to allow the partners to administer their users' access.
How should a partner identity be provisioned in Salesforce for this solution?
- A. Create a contactless user.
- B. Create a person account.
- C. Create a user and a related contact.
- D. Create only a contact.
正解:C 🗳️
Northern Trail Outfitters (NTO) uses Salesforce Experience Cloud sites (previously known as Customer Community) to provide a digital portal where customers can login using their Google account.
NTO would like to automatically create a case record for first time users logging into Salesforce Experience Cloud.
What should an Identity architect do to fulfill the requirement?
- A. Create an authentication provider for Social Login using Google and leverage standard registration handler.
- B. Implement a Just-in-Time handler class that has logic to create cases upon first login.
- C. Configure an authentication provider for Social Login using Google and a custom registration handler.
- D. Implement a login flow with a record create component for Case.
正解:D 🗳️
A third-party app provider would like to have users provisioned via a service endpoint before users access their app from Salesforce.
What should an identity architect recommend to configure the requirement with limited changes to the third-party app?
- A. Redirect users to the third-party app for registration.
- B. Use Salesforce identity with Security Assertion Markup Language (SAML) for provisioning users.
- C. Create Canvas app in Salesforce for third-party app to provision users.
- D. Use a connected app with user provisioning flow.
正解:D 🗳️
A real estate company wants to provide its customers a digital space to design their interior decoration options. To simplify the registration to gain access to the community site (built in Experience Cloud), the CTO has requested that the IT/Development team provide the option for customers to use their existing social-media credentials to register and access.
The IT lead has approached the Salesforce Identity and Access Management (IAM) architect for technical direction on implementing the social sign-on (for Facebook, Twitter, and a new provider that supports standard OpenID Connect (OIDC)).
Which two recommendations should the Salesforce IAM architect make to the IT Lead?
Choose 2 answers
- A. Authentication provider configuration is required each social sign-on providers; and enable Authentication providers in community.
- B. Apex coding skills are needed for registration handler to create and update users.
- C. Use declarative registration handler process builder/flow to create, update users and contacts.
- D. For supporting OIDC it is necessary to enable Security Assertion Markup Language (SAML) with Just-in-Time provisioning (JIT) and OAuth 2.0.
正解:A、B 🗳️

クリック」
弊社は製品に自信を持っており、面倒な製品を提供していません。


-Kyouya

