Exam IdentityIQ-Associate Topic 3 Question 67 Discussion
Actual exam question for SailPoint's IdentityIQ-Associate exam
Question #: 67
Topic #: 3
Question #: 67
Topic #: 3
Is this an accurate statement about preventive policy checking in IdentityIQ?
IdentityIQ can notify the requester when their access request will cause a policy violation.
IdentityIQ can notify the requester when their access request will cause a policy violation.
Suggested Answer: A Vote an answer
Yes. In SailPoint IdentityIQ, preventive policy checking evaluates proposed access changes before the request is completed or provisioned. When a user submits an access request, IdentityIQ can analyze the requested roles, entitlements, or account changes against configured policies, including separation-of-duty and other access-control policies. If the requested access would create a policy violation, IdentityIQ can present a notification or warning to the requester during the request process.
This notification allows the requester to understand that the requested access conflicts with defined governance rules before the request proceeds further. Depending on configuration, IdentityIQ may allow the request to continue with warning, require additional approval or mitigation, or prevent the request from being submitted. The behavior is controlled by policy configuration, request workflow, and preventive checking settings.
Therefore, the statement is accurate: IdentityIQ can notify the requester when an access request will cause a policy violation. Reference topics: Governance, policy detection, preventive policy checking, access request evaluation, policy violations, and User-Driven Requests.
This notification allows the requester to understand that the requested access conflicts with defined governance rules before the request proceeds further. Depending on configuration, IdentityIQ may allow the request to continue with warning, require additional approval or mitigation, or prevent the request from being submitted. The behavior is controlled by policy configuration, request workflow, and preventive checking settings.
Therefore, the statement is accurate: IdentityIQ can notify the requester when an access request will cause a policy violation. Reference topics: Governance, policy detection, preventive policy checking, access request evaluation, policy violations, and User-Driven Requests.
by Caroline at May 28, 2026, 07:29 AM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).