Which IIQ version are you inquiring about?
8.4
Share all details about your problem, including any error messages you may have received.
We have requirement where certain privileged users when logging into Sailpoint IIQ 8.4 have to do MFA.
Our plan is to calculate a risk score level based on the capabilities and SPRight of the users and store it in an identity attribute, say RiskScore level. This attribute will be then provisioned to AD as well.
Is it possible then from the AD/Azure SSO side can enforce MFA based on this risk score level?
Or is there a better standard ways to implement this?