Saviynt IGA 101 Flashcards
Certification
What are the advantages of a microservices based architecture? (chose one or more)
- Automatic scale up & scale down
- Save cost on infrastructure
- No network latency
- None of the above
Automatic scale up and scale down
Save cost on infrastructure
Saviynt allows end users to interact with a UI that is backed by a
- business layer
- user interface layer
- data layer
- none of the above
user interface layer
Explain the three levels of disaster recovery available
Diamond - Warm DR / continuous replica
Gold - RDS (Relational Database Service) instance provisioned every 24 hours
Platinum - RDS (Relational Database Service) instance provisioned every six hours
What compliance can Saviynt meet?
FedRAMP moderate
ISO 27001:2013
ISO 27001:2015
PCI-DSS
SOC1 Type II
SOC2 Type II
What four types of application security are used?
- Data Isolation
- Security at rest - AES 256 bit encryption w/ Azure Key Vault
- Security in transit - HTTPS only, TLS 1.2+
- URL Security - Akamai WAF, MFA & SSO
What is SC2.0?
Saviynt Connect 2.0
- Provides Secure tunnel from customer’s network to Saviynt Cloud
- Supports forward proxy w/ basic auth & bypass auth
- Routing is handled entirely by SC 2.0 server & routes auto-push to the client
Saviynt Architecture / Connectivity Options
On-prem:
1. Saviynt Connect 2.0 (default)
2. IPSEC VPN
3. VPC / VNET Peering
SAAS:
1. HTTPS
Number of Saviynt regions worldwide
27
Which of the following options does Saviynt suggest for achieving high availability? (choose one or more)
- Deployment in different availability zones and regions
- Assigning elastic IP addresses
- Clustering
- None of the above
- Deployment in different availability zones and regions
- Assigning elastic IP addresses
- Clustering
What does Saviynt mean by Account Correlation?
Account correlation is the process of mapping to users. This also identifies accounts that are unmapped as orphan accounts.
What does EIC stand for?
Enteprise Identity Cloud
What four types of accounts can be managed with Saviynt?
Application accounts
Orphan accounts
Privilege accounts
Service accounts
What are entitlements according to Saviynt?
Entitlements are privileges that are granted to users. Entitlements can be mapped to accounts.
What is a role according to Saviynt?
A role is a collection of entitlements that are assigned to a user. Saviynt’s roles lesson the tedious task of manually assigning entitlements (privileges) to users.
What are the four types of Saviynt roles that can be assigned to users?
Application roles
Enterprise roles
Privileged roles
Other roles
What are the three ways can you import roles to Saviynt?
- Upload roles from the Saviynt UI, as admin (can use CSV files)
- Upload roles based on schema (can also use SAV & CSV files)
- Upload roles using the database connection
How is a 3rd party application represented in Saviynt Enterprise Identity Cloud (EIC)?
As an endpoint (AKA target)
One or more application endpoints logically grouped together under an appliation category is referred to as this by Saviynt
Security System
Accounts, entitlements, and other data can be imported from the target application and mapped into this in Saviynt Enterprise Identity Cloud (EIC)
an endpoint
A endpoint in Saviynt supports these three types of applications
connected, disconnected and hybrid applications
A Saviynt endpoint (target application) can contain user data such as
accounts, entitlements and roles
Saviynt Connectors refer to this for connecting enterprise identity cloud (EIC) to target applications
Saviynt Connectors refer to the configuration setup for connecting enterprise identity cloud (EIC) to target applications
Examples of Saviynt EIC supported out of the box connectors
Active Directory, AWS, Azure, Box, Database, LDAP, PeopleSoft, REST, Salesforce, SAP, SOAP
For home-grown applications, Saviynt provides support to build custom connectors via this
the Saviynt Connector Framework (SCF)