Summer Special Flat 65% Limited Time Discount offer - Ends in 0d 00h 00m 00s - Coupon code: netdisc

SAP C_SEC_2405 SAP Certified Associate - Security Administrator Exam Practice Test

Page: 1 / 8
Total 80 questions

SAP Certified Associate - Security Administrator Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$43.75  $124.99

PDF Study Guide

  • Product Type: PDF Study Guide
$38.5  $109.99
Question 1

Which authorization objects can be used to restrict access to SAP Enterprise Search models in the SAP Fiori launchpad? Note: There are 2 correct answers to this question.

Options:

A.

S_ESH_ADM

B.

SDDLVIEW

C.

RSDDLTIP

D.

S_ESH_CONN

Question 2

In the SAP BTP Cockpit, at which level is Trust Configuration available? Note: There are 2 correct answers to this question.

Options:

A.

Subaccount

B.

Global Account

C.

Directory

D.

Organization

Question 3

In the administration console of the Cloud Identity Services, which authentication providers are available? Note: There are 2 correct answers to this question.

Options:

A.

Successfactors

B.

Concur

C.

Ariba

D.

Fieldglass

Question 4

Which of the following can you use to check if there is an application start lock on an application contained in a PFCG role? Note: There are 2 correct answers to this question.

Options:

A.

Transaction SUIM - Executable Transactions report

B.

Transaction SM01_CUS

C.

Transaction SUIM - Transactions Executable with Profile report

D.

Transaction SM01_DEV

Question 5

When performing a comparison from the imparting role, what happens to organizational level field values in the derived role? Note: There are 2 correct answers to this question.

Options:

A.

Data for organizational levels that have already been maintained in the derived role is NOT overwritten.

B.

Data for organizational levels that have already been maintained in the derived role is overwritten.

C.

Data for organizational levels is transferred only when authorization data for the derived role is first modified.

D.

Data for organizational levels is always transferred when authorization data for the derived role is modified.

Question 6

What is the authorization object required to define the start authorization for an SAP Fiori legacy Web Dynpro application?

Options:

A.

S_SERVICE

B.

S_START

C.

S_SDSAUTH

D.

S_TCODE

Question 7

When you maintain authorizations for SAPUI5 Fiori apps, which of the following object types is the front-end authorization object type?

Options:

A.

TADIR IWSV - SAP Gateway Business Suite Enablement-Service

B.

TADIR G4BA - SAP Gateway Odata V4 Backend Service Group & Assignments

C.

TADIR IWSG - SAP Gateway: Service Groups Metadata

D.

TADIR INA1 - InA Service

Question 8

Under which of the following conditions can you merge authorizations for the same object during role maintenance? Note: There are 2 correct answers to this question.

Options:

A.

The activation status of a manual authorization must match the status of the changed authorizations.

B.

The activation status and the maintenance status of the authorizations must match.

C.

The maintenance status of the changed authorizations must match the status of a manual authorization.

D.

The activation status and the maintenance status of the authorizations must NOT match.

Question 9

An authorization based on what object is required for trusted system access to an SAP Fiori back-end server?

Options:

A.

S_START

B.

S_SERVICE

C.

S_RFC

D.

S_RFCACL

Question 10

What use cases are available for a Local Identity Directory? Note: There are 3 correct answers to this question.

Options:

A.

Merging attributes

B.

Classic use case

C.

Hybrid mode

D.

Proxy mode

E.

S/4HANA use case

Question 11

Which functions in SAP Access Control can be used to approve or reject a user’s continued access to specific security roles? Note: There are 2 correct answers to this question.

Options:

A.

SOD Review

B.

Role Certification

C.

User Access Review

D.

Role Reaffirm

Question 12

What is required to centrally administer a user's master record using Central User Administration? Note: There are 3 correct answers to this question.

Options:

A.

An ALE distribution model

B.

An RFC destination to the target system

C.

An RFC destination to the target client

D.

An existing master record in the target client for the user

E.

An entry in transaction BD54 for the child system

Question 13

In SAP S/4HANA Cloud Public Edition, what does the ID of an SAP-predefined Space refer to?

Options:

A.

The software release it was created for

B.

The SAP Fiori applications it was defined for

C.

The business area it was designed for

D.

The business roles it is to be assigned to

Question 14

What are some of the rules for SAP-developed roles in SAP S/4HANA Cloud Public Edition? Note: There are 3 correct answers to this question.

Options:

A.

Role maintenance reads applications from a catalog.

B.

Role maintenance reads applications from role menus.

C.

Manual role authorizations are supported in custom catalogs.

D.

Authorization defaults define role authorizations.

E.

Catalogs are assigned to role menus.

Question 15

For users with system administration authorization, which additional functions are provided by the SAP Easy Access menu? Note: There are 2 correct answers to this question.

Options:

A.

Calling menus for roles and assigning them to users

B.

Calling programs

C.

Creating roles

D.

Creating users

Question 16

What does SAP recommend you do when you transport a custom leading business role in SAP S/4HANA Cloud Public Edition?

Options:

A.

Add the pre-delivered business role that was used as a template to create the custom leading business role to the Software Collection.

B.

Add all derived business roles as dependencies to the Software Collection.

C.

Add all other leading business roles from the same Line of Business as dependencies to the Software Collection.

Question 17

Which object type is assigned to activated OData services in transaction SU24?

Options:

A.

HTTP

B.

G4BA

C.

IWSG

D.

IWSV

Question 18

In S/4HANA on-premise, which of the following combinations is required to grant a business user access to data from a Core Data Services (CDS) view using the standard ABAP authorization concept and authorization object S_RS_AUTH?

Options:

A.

A CDS role with access conditions based on authorization object S_RS_AUTH, a PFCG role with authorization for object S_RS_AUTH and assignment of the PFCG role, the CDS role to the business user.

B.

A CDS role with access conditions based on authorization object S_RS_AUTH, a PFCG role containing the CDS role and access conditions based upon authorization object S_RS_AUTH, assignment of the PFCG role to the business user.

C.

A CDS role with access conditions based on authorization object S_RS_AUTH, a PFCG role containing the CDS role and access conditions based upon authorization object S_RS_AUTH, assignment of the PFCG role and the CDS role to the business user.

D.

A CDS role with access conditions based on authorization object S_RS_AUTH, a PFCG role with authorization for object S_RS_AUTH, assignment of the PFCG role to the business user.

Question 19

Which solution analyzes an SAP system's administrative areas to safeguard against potential threats?

Options:

A.

SAP Code Vulnerability Analyzer

B.

SAP Security Optimization Services

C.

SAP EarlyWatch Alert

D.

SAP Enterprise Threat Detection

Question 20

What can be assigned directly to a user when using the SAP Launchpad service in SAP BTP?

Options:

A.

Spaces

B.

Launchpad roles

C.

Catalogs

D.

Role collections

Question 21

When creating PFCG roles for SAP Fiori access, what is included automatically when adding a catalog to the menu of a back-end PFCG role? Note: There are 2 correct answers to this question.

Options:

A.

The start authorizations and the authorization default values for each IWSG TADIR service definitions in the catalog.

B.

The IWSG TADIR service definitions from the catalog.

C.

The start authorizations and the authorization default values for each IWSV TADIR service definitions in the catalog.

D.

The IWSV TADIR service definitions from the catalog.

Question 22

Which user types can log on to the SAP S/4HANA system in interactive mode? Note: There are 2 correct answers to this question.

Options:

A.

System User

B.

Communication User

C.

Dialog User

D.

Service User

Question 23

Which of the following is part of the SAP S/4HANA central UI component?

Options:

A.

SAP Fiori object page

B.

SAP Fiori transactional application

C.

SAP Fiori launchpad

D.

SAP Fiori analytical application

Question 24

In the administration console of the Cloud Identity Services, for which system type can you define both read and write transformations?

Options:

A.

Target systems

B.

Source systems

C.

Proxy systems

Page: 1 / 8
Total 80 questions