Correct Answer: B,E
Explanation/Reference:
Incorrect answers:
A: Identity Management (IdM) includes the capability to store, manage, synchronize, provision, administer, and audit security data related to user identity.
C: Identity provisioning may include workflow processes to handle activities such as the creation of new users, requests for additional access, the removal of users, and password resets. Workflow processes help by adding structure to the activities. They allow ordinary users to initiate provisioning processes which may trigger corresponding approval processes that involve the appropriate levels of management D: Security data is most frequently stored in an LDAP directory.
Note:
Identity provisioning includes activities such as:
*The creation of directory entries for users
* Assigning attributes, roles, and privileges to users
* Setting and resetting passwords
* Altering attributes, roles, and privileges as job functions and organizations change
* Altering security data based on changes to the IT landscape, e.g., the addition of new computing resources that require new attributes and entitlements, or the removal of legacy systems and associated security data
* Removing users in a timely manner when they leave the company or should no longer have access to resources
* Ensuring that accounts and privileges are correct and consistent across the enterprise
* Detecting accounts that are created outside of normal channels (rogue accounts) and sending alerts when such accounts are detected
* Automating repeatable administration tasks
Reference: Oracle Reference Architecture, Security , Release 3.1