An organization is adopting cloud services at a rapid pace and now has multiple SaaS applications in use. Each application has a separate log-in, so the security team wants to reduce the number of credentials each employee must maintain. Which of the following is the first step the security team should take?
Choose an answer
Tap an option to check your answer.
Correct answer: Select an IdP..
Why this is the answer
The first step for the security team is to select an Identity Provider (IdP). An IdP is a system that creates, maintains, and manages identity information for principals and provides authentication services to other applications. By choosing an IdP, the organization establishes a central authority for user identities and authentication, which is foundational for implementing single sign-on (SSO) across multiple SaaS applications. Enabling SAML (Security Assertion Markup Language) is a protocol for exchanging authentication and authorization data, but it requires an IdP to function. Creating OAuth tokens is a method for delegated authorization, not primary authentication, and also relies on an existing identity infrastructure. Password vaulting helps manage passwords but doesn't centralize identity or enable SSO in the same way an IdP does.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed