Official Bank 0/248

Salesforce Certified Platform Identity and Access Management Architect Exam (Plat-Arch-203) - Salesforce Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
248 Total Questions
1
Question
An architect needs to set up a Facebook Authentication provider as login option for a salesforce customer Community. What portion of the authentication provider setup associates a Facebook user with a salesforce user?
Options
A Apex registration handler
B Consumer key and consumer secret
C Federation ID
D User info endpoint URL
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Universal Containers (UC) uses Active Directory (AD) as their identity store for employees and must continue to do so for network access. UC is undergoing a major transformation program and moving all of their enterprise applications to cloud platforms including Salesforct, Workday, and SAP HAN
Select 2
Options
A Salesforce and Identity Connect licenses
B Company Community and Identity licenses
C Identity and Identity Connect licenses
D Chatter Only and Identity licenses
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
An identity architect wants to secure Salesforce APIs using Security Assertion Markup Language (SAML). For secunty purposes, administrators will need to authorize the applications that will be consuming the APIs.

Which Salesforce OAuth authorization flow should be used?
Options
A OAuth 2.0 JWT Bearer Flow
B OAuth 2.0 User-Agent Flow
C OAuth 2-0 SAML Bearer Assertion Flow
D SAML Assertion Flow
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Universal Containers (UC) uses middleware to integrate multiple systems with Salesforce. UC has a strict, new requirement that usernames and passwords cannot be stored in any UC system. How can UC’s middleware authenticate to Salesforce while adhering to this requirement?
Options
A Create a Connected App that supports the Refresh Token OAuth Flow
B Create a Connected App that supports the JWT Bearer Token OAuth Flow.
C Create a Connected App that supports the User-Agent OAuth Flow.
D Create a Connected App that supports the Web Server OAuth Flow.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
Universal Containers (UC) has implemented SAML-based Single Sign-On to provide seamless access to its Salesforce Orgs, financial system, and CPQ system. Below is the SSO implementation landscape.

Exhibit

What role combination is represented by the systems in this scenario''
Options
A Salesforce Org1 and PingFederate are acting as Identity Providers.
B Financial System and CPQ System are the only Service Providers.
C Salesforce Org1 and Salesforce Org2 are the only Service Providers.
D Salesforce Org1 and Salesforce Org2 are acting as Identity Providers.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.