Identity Federation (SAML) interview questions

36 real Identity Federation (SAML) questions from the Security bank, as asked in Indian campus drives and tech interviews. Every question has a verified answer and an AI-tutor explanation on placd — free to start.

1. What is Identity Provider (IdP)?

Junior
  1. A.login flow that starts at the IdP, which posts an assertion to the application
  2. B.SP endpoint that receives and processes the SAML response from the IdP
  3. C.service that authenticates users and issues identity assertions to applications
  4. D.application that relies on an IdP to authenticate its users
Reveal the answer + AI explanation — free account

3. Which statement is correct?

Junior
  1. A.Identity Provider (IdP) — creating a user account on first SSO login using attributes from the assertion
  2. B.Identity Provider (IdP) — configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.Identity Provider (IdP) — service that authenticates users and issues identity assertions to applications
  4. D.Identity Provider (IdP) — login flow that begins at the application, which redirects the user to the IdP
Reveal the answer + AI explanation — free account

4. What is Service Provider (SP)?

Junior
  1. A.SP endpoint that receives and processes the SAML response from the IdP
  2. B.application that relies on an IdP to authenticate its users
  3. C.service that authenticates users and issues identity assertions to applications
  4. D.XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Reveal the answer + AI explanation — free account

6. Which statement is correct?

Junior
  1. A.Service Provider (SP) — application that relies on an IdP to authenticate its users
  2. B.Service Provider (SP) — standard for automated provisioning and deprovisioning of user identities across systems
  3. C.Service Provider (SP) — login flow that begins at the application, which redirects the user to the IdP
  4. D.Service Provider (SP) — configured trust relationship letting an SP accept assertions from a specific IdP
Reveal the answer + AI explanation — free account

7. What is SAML assertion?

Junior
  1. A.signed XML statement from an IdP conveying a user's identity and attributes
  2. B.SP endpoint that receives and processes the SAML response from the IdP
  3. C.associating a federated external identity with an existing local user account
  4. D.service that authenticates users and issues identity assertions to applications
Reveal the answer + AI explanation — free account

9. Which statement is correct?

Junior
  1. A.SAML assertion — application that relies on an IdP to authenticate its users
  2. B.SAML assertion — service that authenticates users and issues identity assertions to applications
  3. C.SAML assertion — attack injecting a forged assertion while keeping a valid signature to bypass verification
  4. D.SAML assertion — signed XML statement from an IdP conveying a user's identity and attributes
Reveal the answer + AI explanation — free account

10. What is SP-initiated SSO?

Junior
  1. A.signed XML statement from an IdP conveying a user's identity and attributes
  2. B.SP endpoint that receives and processes the SAML response from the IdP
  3. C.login flow that begins at the application, which redirects the user to the IdP
  4. D.application that relies on an IdP to authenticate its users
Reveal the answer + AI explanation — free account

12. Which statement is correct?

Junior
  1. A.SP-initiated SSO — signed XML statement from an IdP conveying a user's identity and attributes
  2. B.SP-initiated SSO — login flow that begins at the application, which redirects the user to the IdP
  3. C.SP-initiated SSO — application that relies on an IdP to authenticate its users
  4. D.SP-initiated SSO — standard for automated provisioning and deprovisioning of user identities across systems
Reveal the answer + AI explanation — free account

13. What is IdP-initiated SSO?

Mid
  1. A.application that relies on an IdP to authenticate its users
  2. B.login flow that starts at the IdP, which posts an assertion to the application
  3. C.login flow that begins at the application, which redirects the user to the IdP
  4. D.associating a federated external identity with an existing local user account
Reveal the answer + AI explanation — free account

15. Which statement is correct?

Mid
  1. A.IdP-initiated SSO — configured trust relationship letting an SP accept assertions from a specific IdP
  2. B.IdP-initiated SSO — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
  3. C.IdP-initiated SSO — standard for automated provisioning and deprovisioning of user identities across systems
  4. D.IdP-initiated SSO — login flow that starts at the IdP, which posts an assertion to the application
Reveal the answer + AI explanation — free account

16. What is Assertion Consumer Service (ACS)?

Mid
  1. A.attack injecting a forged assertion while keeping a valid signature to bypass verification
  2. B.creating a user account on first SSO login using attributes from the assertion
  3. C.SP endpoint that receives and processes the SAML response from the IdP
  4. D.configured trust relationship letting an SP accept assertions from a specific IdP
Reveal the answer + AI explanation — free account

18. Which statement is correct?

Mid
  1. A.Assertion Consumer Service (ACS) — SP endpoint that receives and processes the SAML response from the IdP
  2. B.Assertion Consumer Service (ACS) — login flow that starts at the IdP, which posts an assertion to the application
  3. C.Assertion Consumer Service (ACS) — standard for automated provisioning and deprovisioning of user identities across systems
  4. D.Assertion Consumer Service (ACS) — creating a user account on first SSO login using attributes from the assertion
Reveal the answer + AI explanation — free account

19. What is SAML metadata?

Mid
  1. A.login flow that begins at the application, which redirects the user to the IdP
  2. B.configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.standard for automated provisioning and deprovisioning of user identities across systems
  4. D.XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Reveal the answer + AI explanation — free account

21. Which statement is correct?

Mid
  1. A.SAML metadata — login flow that begins at the application, which redirects the user to the IdP
  2. B.SAML metadata — attack injecting a forged assertion while keeping a valid signature to bypass verification
  3. C.SAML metadata — signed XML statement from an IdP conveying a user's identity and attributes
  4. D.SAML metadata — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Reveal the answer + AI explanation — free account

22. What is Just-in-time provisioning?

Mid
  1. A.signed XML statement from an IdP conveying a user's identity and attributes
  2. B.creating a user account on first SSO login using attributes from the assertion
  3. C.standard for automated provisioning and deprovisioning of user identities across systems
  4. D.login flow that begins at the application, which redirects the user to the IdP
Reveal the answer + AI explanation — free account

24. Which statement is correct?

Mid
  1. A.Just-in-time provisioning — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
  2. B.Just-in-time provisioning — creating a user account on first SSO login using attributes from the assertion
  3. C.Just-in-time provisioning — signed XML statement from an IdP conveying a user's identity and attributes
  4. D.Just-in-time provisioning — attack injecting a forged assertion while keeping a valid signature to bypass verification
Reveal the answer + AI explanation — free account

25. What is SAML signature wrapping?

Senior
  1. A.attack injecting a forged assertion while keeping a valid signature to bypass verification
  2. B.login flow that begins at the application, which redirects the user to the IdP
  3. C.login flow that starts at the IdP, which posts an assertion to the application
  4. D.application that relies on an IdP to authenticate its users
Reveal the answer + AI explanation — free account

26. Which term means: "attack injecting a forged assertion while keeping a valid signature to bypass verification"?

Senior
  1. A.Assertion Consumer Service (ACS)
  2. B.SAML signature wrapping
  3. C.SP-initiated SSO
  4. D.SAML assertion
Reveal the answer + AI explanation — free account

27. Which statement is correct?

Senior
  1. A.SAML signature wrapping — creating a user account on first SSO login using attributes from the assertion
  2. B.SAML signature wrapping — configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.SAML signature wrapping — associating a federated external identity with an existing local user account
  4. D.SAML signature wrapping — attack injecting a forged assertion while keeping a valid signature to bypass verification
Reveal the answer + AI explanation — free account

28. What is SCIM?

Senior
  1. A.attack injecting a forged assertion while keeping a valid signature to bypass verification
  2. B.associating a federated external identity with an existing local user account
  3. C.configured trust relationship letting an SP accept assertions from a specific IdP
  4. D.standard for automated provisioning and deprovisioning of user identities across systems
Reveal the answer + AI explanation — free account

30. Which statement is correct?

Senior
  1. A.SCIM — standard for automated provisioning and deprovisioning of user identities across systems
  2. B.SCIM — configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.SCIM — application that relies on an IdP to authenticate its users
  4. D.SCIM — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
Reveal the answer + AI explanation — free account

Showing 30 of 36 Identity Federation (SAML) questions — the full set, with answers, explanations and an AI tutor on every question, is inside.

Free to start

Answers, AI explanations, and a scored voice mock interview

Sign up free to check your answers with explanations, ask the AI tutor anything on any question, and take one full AI mock interview — scored like a real panel.

Practice Identity Federation (SAML) free