Certified Cloud Security Professional – CCSP – Question298

With a federated identity system, where would a user perform their authentication when requesting services or application access?

A.
Cloud provider
B. The application
C. Their home organization
D. Third-party authentication system

Correct Answer: C

Explanation:

Explanation: With a federated identity system, a user will perform authentication with their home organization, and the application will accept the authentication tokens and user information from the identity provider in order to grant access. The purpose of a federated system is to allow users to authenticate from their home organization. Therefore, using the application or a third-party authentication system would be contrary to the purpose of a federated system because it necessitates the creation of additional accounts. The use of a cloud provider would not be relevant to the operations of a federated system.