🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 12 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your company hosts Windows Server 2019 Active Directory on-premises and must provide employees with single sign-on to several external SaaS applications that accept SAML 2.0 tokens. Corporate policy forbids synchronizing passwords to any third-party service; authentication must remain on-premises. What is the most appropriate solution to meet these constraints?

  • Deploy Active Directory Federation Services (ADFS) with an internet-facing Web Application Proxy and configure SAML federation trusts to the SaaS providers.

  • Use LDAP over TLS so the SaaS providers can authenticate users directly against the on-premises domain controllers.

  • Implement Azure AD Connect with password hash synchronization and use Azure AD as the identity provider for the SaaS applications.

  • Configure a RADIUS server and enforce two-factor authentication with token cards for SaaS access.

ISC2 Systems Security Certified Practitioner (SSCP)
Access Controls
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot