Awarded for completing Identity Provider Hardening: Protecting the Keys to the Kingdom and passing its exam, demonstrating the ability to explain why an identity provider concentrates risk, apply stricter controls to its administrative plane, harden support and recovery workflows, manage federated session and token lifetime, monitor identity provider logs as a priority detection surface, build and use a blast radius map, and apply heightened vendor oversight to a cloud-hosted identity provider.
Certificates are designed to be checked, not just displayed.
The credential is valid for 12 months from issue. Its public page states the expiry date, and renewing means passing the current exam again — so the credential always reflects the current material.