Identity Federation (SAML) interview questions

36 Identity Federation (SAML) questions from the Security bank, written for Indian campus drives and tech interviews. Every question has a verified answer and an AI-tutor explanation on placd.

Free to start: the 2-minute IT readiness check — six questions and a result.

Take the free IT readiness check

or take a mock interview set up for this area

1. What is Identity Provider (IdP)?

Junior
  1. A.login flow that starts at the IdP, which posts an assertion to the application
  2. B.SP endpoint that receives and processes the SAML response from the IdP
  3. C.service that authenticates users and issues identity assertions to applications
  4. D.application that relies on an IdP to authenticate its users

Answer + AI explanation with Pro

2. Which term means: "service that authenticates users and issues identity assertions to applications"?

Junior
  1. A.SAML signature wrapping
  2. B.Relying party trust
  3. C.Service Provider (SP)
  4. D.Identity Provider (IdP)

Answer + AI explanation with Pro

3. Which statement is correct?

Junior
  1. A.Identity Provider (IdP) — creating a user account on first SSO login using attributes from the assertion
  2. B.Identity Provider (IdP) — configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.Identity Provider (IdP) — service that authenticates users and issues identity assertions to applications
  4. D.Identity Provider (IdP) — login flow that begins at the application, which redirects the user to the IdP

Answer + AI explanation with Pro

4. What is Service Provider (SP)?

Junior
  1. A.SP endpoint that receives and processes the SAML response from the IdP
  2. B.application that relies on an IdP to authenticate its users
  3. C.service that authenticates users and issues identity assertions to applications
  4. D.XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust

Answer + AI explanation with Pro

5. Which term means: "application that relies on an IdP to authenticate its users"?

Junior
  1. A.SCIM
  2. B.Service Provider (SP)
  3. C.Identity Provider (IdP)
  4. D.SAML metadata

Answer + AI explanation with Pro

6. Which statement is correct?

Junior
  1. A.Service Provider (SP) — application that relies on an IdP to authenticate its users
  2. B.Service Provider (SP) — standard for automated provisioning and deprovisioning of user identities across systems
  3. C.Service Provider (SP) — login flow that begins at the application, which redirects the user to the IdP
  4. D.Service Provider (SP) — configured trust relationship letting an SP accept assertions from a specific IdP

Answer + AI explanation with Pro

7. What is SAML assertion?

Junior
  1. A.signed XML statement from an IdP conveying a user's identity and attributes
  2. B.SP endpoint that receives and processes the SAML response from the IdP
  3. C.associating a federated external identity with an existing local user account
  4. D.service that authenticates users and issues identity assertions to applications

Answer + AI explanation with Pro

8. Which term means: "signed XML statement from an IdP conveying a user's identity and attributes"?

Junior
  1. A.IdP-initiated SSO
  2. B.Account linking
  3. C.SAML assertion
  4. D.SAML signature wrapping

Answer + AI explanation with Pro

9. Which statement is correct?

Junior
  1. A.SAML assertion — application that relies on an IdP to authenticate its users
  2. B.SAML assertion — service that authenticates users and issues identity assertions to applications
  3. C.SAML assertion — attack injecting a forged assertion while keeping a valid signature to bypass verification
  4. D.SAML assertion — signed XML statement from an IdP conveying a user's identity and attributes

Answer + AI explanation with Pro

10. What is SP-initiated SSO?

Junior
  1. A.signed XML statement from an IdP conveying a user's identity and attributes
  2. B.SP endpoint that receives and processes the SAML response from the IdP
  3. C.login flow that begins at the application, which redirects the user to the IdP
  4. D.application that relies on an IdP to authenticate its users

Answer + AI explanation with Pro

11. Which term means: "login flow that begins at the application, which redirects the user to the IdP"?

Junior
  1. A.SAML metadata
  2. B.SAML assertion
  3. C.SCIM
  4. D.SP-initiated SSO

Answer + AI explanation with Pro

12. Which statement is correct?

Junior
  1. A.SP-initiated SSO — signed XML statement from an IdP conveying a user's identity and attributes
  2. B.SP-initiated SSO — login flow that begins at the application, which redirects the user to the IdP
  3. C.SP-initiated SSO — application that relies on an IdP to authenticate its users
  4. D.SP-initiated SSO — standard for automated provisioning and deprovisioning of user identities across systems

Answer + AI explanation with Pro

13. What is IdP-initiated SSO?

Mid
  1. A.application that relies on an IdP to authenticate its users
  2. B.login flow that starts at the IdP, which posts an assertion to the application
  3. C.login flow that begins at the application, which redirects the user to the IdP
  4. D.associating a federated external identity with an existing local user account

Answer + AI explanation with Pro

14. Which term means: "login flow that starts at the IdP, which posts an assertion to the application"?

Mid
  1. A.SAML metadata
  2. B.SAML assertion
  3. C.IdP-initiated SSO
  4. D.Relying party trust

Answer + AI explanation with Pro

15. Which statement is correct?

Mid
  1. A.IdP-initiated SSO — configured trust relationship letting an SP accept assertions from a specific IdP
  2. B.IdP-initiated SSO — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
  3. C.IdP-initiated SSO — standard for automated provisioning and deprovisioning of user identities across systems
  4. D.IdP-initiated SSO — login flow that starts at the IdP, which posts an assertion to the application

Answer + AI explanation with Pro

16. What is Assertion Consumer Service (ACS)?

Mid
  1. A.attack injecting a forged assertion while keeping a valid signature to bypass verification
  2. B.creating a user account on first SSO login using attributes from the assertion
  3. C.SP endpoint that receives and processes the SAML response from the IdP
  4. D.configured trust relationship letting an SP accept assertions from a specific IdP

Answer + AI explanation with Pro

17. Which term means: "SP endpoint that receives and processes the SAML response from the IdP"?

Mid
  1. A.Assertion Consumer Service (ACS)
  2. B.IdP-initiated SSO
  3. C.Identity Provider (IdP)
  4. D.Account linking

Answer + AI explanation with Pro

18. Which statement is correct?

Mid
  1. A.Assertion Consumer Service (ACS) — SP endpoint that receives and processes the SAML response from the IdP
  2. B.Assertion Consumer Service (ACS) — login flow that starts at the IdP, which posts an assertion to the application
  3. C.Assertion Consumer Service (ACS) — standard for automated provisioning and deprovisioning of user identities across systems
  4. D.Assertion Consumer Service (ACS) — creating a user account on first SSO login using attributes from the assertion

Answer + AI explanation with Pro

19. What is SAML metadata?

Mid
  1. A.login flow that begins at the application, which redirects the user to the IdP
  2. B.configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.standard for automated provisioning and deprovisioning of user identities across systems
  4. D.XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust

Answer + AI explanation with Pro

20. Which term means: "XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust"?

Mid
  1. A.SAML metadata
  2. B.IdP-initiated SSO
  3. C.SAML signature wrapping
  4. D.Account linking

Answer + AI explanation with Pro

21. Which statement is correct?

Mid
  1. A.SAML metadata — login flow that begins at the application, which redirects the user to the IdP
  2. B.SAML metadata — attack injecting a forged assertion while keeping a valid signature to bypass verification
  3. C.SAML metadata — signed XML statement from an IdP conveying a user's identity and attributes
  4. D.SAML metadata — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust

Answer + AI explanation with Pro

22. What is Just-in-time provisioning?

Mid
  1. A.signed XML statement from an IdP conveying a user's identity and attributes
  2. B.creating a user account on first SSO login using attributes from the assertion
  3. C.standard for automated provisioning and deprovisioning of user identities across systems
  4. D.login flow that begins at the application, which redirects the user to the IdP

Answer + AI explanation with Pro

23. Which term means: "creating a user account on first SSO login using attributes from the assertion"?

Mid
  1. A.SP-initiated SSO
  2. B.IdP-initiated SSO
  3. C.Just-in-time provisioning
  4. D.Identity Provider (IdP)

Answer + AI explanation with Pro

24. Which statement is correct?

Mid
  1. A.Just-in-time provisioning — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust
  2. B.Just-in-time provisioning — creating a user account on first SSO login using attributes from the assertion
  3. C.Just-in-time provisioning — signed XML statement from an IdP conveying a user's identity and attributes
  4. D.Just-in-time provisioning — attack injecting a forged assertion while keeping a valid signature to bypass verification

Answer + AI explanation with Pro

25. What is SAML signature wrapping?

Senior
  1. A.attack injecting a forged assertion while keeping a valid signature to bypass verification
  2. B.login flow that begins at the application, which redirects the user to the IdP
  3. C.login flow that starts at the IdP, which posts an assertion to the application
  4. D.application that relies on an IdP to authenticate its users

Answer + AI explanation with Pro

26. Which term means: "attack injecting a forged assertion while keeping a valid signature to bypass verification"?

Senior
  1. A.Assertion Consumer Service (ACS)
  2. B.SAML signature wrapping
  3. C.SP-initiated SSO
  4. D.SAML assertion

Answer + AI explanation with Pro

27. Which statement is correct?

Senior
  1. A.SAML signature wrapping — creating a user account on first SSO login using attributes from the assertion
  2. B.SAML signature wrapping — configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.SAML signature wrapping — associating a federated external identity with an existing local user account
  4. D.SAML signature wrapping — attack injecting a forged assertion while keeping a valid signature to bypass verification

Answer + AI explanation with Pro

28. What is SCIM?

Senior
  1. A.attack injecting a forged assertion while keeping a valid signature to bypass verification
  2. B.associating a federated external identity with an existing local user account
  3. C.configured trust relationship letting an SP accept assertions from a specific IdP
  4. D.standard for automated provisioning and deprovisioning of user identities across systems

Answer + AI explanation with Pro

29. Which term means: "standard for automated provisioning and deprovisioning of user identities across systems"?

Senior
  1. A.SAML signature wrapping
  2. B.IdP-initiated SSO
  3. C.Service Provider (SP)
  4. D.SCIM

Answer + AI explanation with Pro

30. Which statement is correct?

Senior
  1. A.SCIM — standard for automated provisioning and deprovisioning of user identities across systems
  2. B.SCIM — configured trust relationship letting an SP accept assertions from a specific IdP
  3. C.SCIM — application that relies on an IdP to authenticate its users
  4. D.SCIM — XML document exchanging endpoints, certificates, and settings to establish IdP-SP trust

Answer + AI explanation with Pro

Showing 30 of 36 Identity Federation (SAML) questions — the full set, with answers, explanations and an AI tutor on every question, is inside.

Free to start

Start with a free readiness check

Sign up free for the 2-minute IT readiness check and a scored result. Answers, explanations and the AI tutor on every Identity Federation (SAML) question come with Pro.

Take the free IT readiness check

or take a mock interview set up for this area

24,000+ questions & coding problemsSoftware & IT16,274 questionsGovernment jobs26 examsAptitudenew questions every timeAI practice interviewwith feedback65 topics to practiseMechanical1,149 questionsGATE ME9 papersEngineering Mathematics381 questions2-minute checkfreeDSA Problems1,422Civil1,005 questionsGATE CE9 papersCS Fundamentals1,209 questionsYour scores6 skillsSystem Design25Electrical / EEE1,047 questionsGATE EE9 papersRun your codeC++ · Java · PythonLow-Level Design144Electronics & Comm.975 questionsGATE EC9 papersAI help on every questionFull-Stack6,282Chemical1,005 questionsGATE CH9 papersAI whiteboardsystem designWork abroadEurope · remote · transfersESE ME1 paperGATE practice papers2019–2026ESE CE1 paperDate alertsbefore the last dateESE EE1 paperBehavioural courseHR round practiceESE ET1 paperResume optimizerProSSC JE ME1 paperApplication trackerSSC JE CE1 paperCompany-wise prepSSC JE EE1 paperRole roadmapsRRB JE1 subjectPriced in ₹UPI · cardsISRO SC1 paperGATE CS9 papersIBPS SO IT1 paperUGC NET CS1 paperSSC CGL26 papersIBPS PO26 papersRRB NTPC26 papersSSC CHSL26 papersIBPS Clerk26 papersSBI Clerk26 papersRRB Group D26 papersSSC CPO26 papersSSC GD26 papers