SAP C_SECAUTH_20試験情報と無料練習テストはこちら [Q28-Q51]

Share

SAP C_SECAUTH_20試験情報と無料練習テストはこちら

合格させるSAP C_SECAUTH_20プレミアムお試しセットテストエンジンPDFで無料問題集セット


SAP C_SECAUTH_20 認定試験の出題範囲:

トピック出題範囲
トピック 1
  • GDPRと、SAPがデータプライバシーガバナンス
  • SAP FioriAuthorizationsおよびS
  • 4HANA |をどのようにサポートしているかを説明してください
トピック 2
  • SAPがSNC、SSL、シングルサインオン
  • セキュリティ監視およびセキュリティ評価をどのようにサポートしているかを説明する
トピック 3
  • SAPシステムでセキュリティ監査を使用する方法を説明する
  • ABAPでの承認の概念と役割の保守を説明する
トピック 4
  • SAP
  • 承認と役割の保守|でセキュリティ目標とアクセスガバナンスソリューションおよびツールを説明する
トピック 5
  • SAP Solution Managerを使用してセキュリティを監視し、トレースとログを使用してセキュリティの問題をトラブルシューティングします
  • データプライバシーガバナンスとサイバーセキュリティ

 

質問 28
What is the main purpose of SAP Access Control, as an enterprise software solution?

  • A. Secure authentication for cloud and on-premise
  • B. Identify security risk and document compliance
  • C. Deployment of encryption services
  • D. Manage corporate social media presence

正解: B

 

質問 29
Which of the following accurately describe Solution Manager functionality? Note: There are 3 correct Answers to this question.

  • A. SAP EWA provides the most comprehensive security check.
  • B. System recommendations provide a worklist of potentially relevant security notes.
  • C. Configuration validation helps to standardize and harmonize security-related configuration items for ABAP systems only.
  • D. SAP SOS self-service is a convenient entry point to introduce security monitoring.
  • E. Configuration validation can check if security policies were applied.

正解: A,B,D

 

質問 30
Which ABAP transaction codes are relevant for SNC parameter configuration? Note: There are 2 correct answer to this question.

  • A. SNCCONFIG
  • B. SNCWIZARD
  • C. SNCO
  • D. STRUST

正解: A,B

 

質問 31
Your system is configured to prohibit a user from logging on multiple times to the system with the same User ID in violation of your SAP licensing agreement. However, certain users need to be exempt from this limitation. Which instance profile parameter can you configure to allow a small group of users to bypass the limitation of multiple logins?

  • A. login/disable_multi_rfc_login
  • B. login/disable_multi_gui_login
  • C. login/multi_login_users
  • D. login/server_logon_restriction

正解: C

 

質問 32
You want to limit an authorization administrator so that they can only assign certain authorizations. Which authorization object should you use?

  • A. S_USER_ADM
  • B. S_USER_AGR
  • C. S_USER_VAL
  • D. S_USER_TCD

正解: B

 

質問 33
Which application allows a role developer to perform the mass maintenance of menu options from selected SAP Fiori Title Catalogs?

  • A. PRGN_CREATE_FIORI_BACKENDROLES
  • B. PRGN_CREATE_FIORI_FRONTENDROLE
  • C. PRGN_PRINT_AGR_MENU
  • D. PRGN_COMPARE_ROLE_MENU

正解: B

 

質問 34
Which feature is available in the CommonCryptoLib scenario provided by SAP Security Library?

  • A. Secure Store and Forward (SSF)
  • B. SSL/TLS
  • C. Hardware Security Module (HSM)
  • D. SPNEGO / ABAP

正解: A

 

質問 35
During maintenance of role you notice that the status text for an authorization object indicates status "Changed New" What does this status text mean?

  • A. The authorization object was used to create a new authorization because the initial configuration of the role change a default value maintained in SU24
  • B. This authorization object has been flagged as critical object
  • C. The authorization object was used to create a new authorization because the value contained in SU24 differ from the SAP standard contained in SU25
  • D. The authorization object must be maintained again

正解: A

 

質問 36
Which of the following correctly describe the SAP Security Optimization Service (SOS) offerings? Note:
There are 3 correct Answers to this question.

  • A. Self Service: all completely automated checks in all SAP systems
  • B. Onsite Service: available with additional costs
  • C. Self Service: performed by experienced service engineers
  • D. Remote Service: part of CQC service offering
  • E. Onsite Service: performed by specialists

正解: B,D,E

 

質問 37
Which feature is available in the CommonCryptoLib Scenario provided by SAP Security Library?

  • A. SPNEGO/ABAP
  • B. SSL/TLS
  • C. Secure Store and Forward(SSF)
  • D. Hardware Security Model (HSM)

正解: C

 

質問 38
Which of the following actions are required to ensure complete logging of table data changes? Note: There are
3 correct answer to this question.

  • A. Parameter RECCLIENT must be maintained in transaction STMS
  • B. Client change option must be set to Automatic Recording of changes
  • C. Instance profile parameter rec/client must be maintained for client
  • D. Log Data changes must be enable at the table level in transaction SE13
  • E. The security log must be activated using transaction SM19

正解: A,C,D

 

質問 39
When building a PFCG role for SAP Fiori access on an embedded front-end server configuration, which of the following item should be provided?
Note: There are 3 correct answer to this question.

  • A. UI access to the Apps
  • B. Catalog for the Start Authorization
  • C. Start Authorizations for 0 Data Services
  • D. SAP Favorites
  • E. WAPA Business Server Pages

正解: A,B,C

 

質問 40
Which of the following parameters must be configured to capture log data in the Security Audit Log?

  • A. rec/client
  • B. rsau/enable
  • C. rdisp/TRACE
  • D. dir_logging

正解: B

 

質問 41
Which authorization is required to modify authorization data of derived roles?

  • A. S_USER_SYS
  • B. S_USER_AUT
  • C. S_USER_AGR
  • D. S_USER_VAL

正解: C

 

質問 42
The DBMS tab in transaction SU01 allows you to manage database privilege assignments for which of the following scenarios? Note: There are 2 correct Answers to this question.

  • A. When a user needs to execute CDS Views
  • B. When users need to use reporting authorizations on SAP BW
  • C. When a user needs to run applications that access the database directly
  • D. When users need 1:1 user mapping to map analytical privileges of the database to the virtual analysis authorization of SAP BW

正解: C,D

 

質問 43
Which of the following features are provided by the SAP Fiori Launchpad content Manager? Note: There are 3 correct answer to this question.

  • A. Create and Configure Catalogs
  • B. Display role assignments for Catalogs
  • C. Display the issue with SAP Fiori Launchpad Content
  • D. Create and Configure Groups
  • E. Activate 0 Data Services

正解: A,B,C

 

質問 44
In the case of missing OData authorizations, why is it not recommended to maintained S_SERVICE manually within an SAP Fiori Authorization Role?
Note: There are 2 correct answer to this question.

  • A. The SRV_NAME Value of the S_SERVICE authorization object is the name of an OData service
  • B. The SRV_NAME Value of the S_SERVICE authorization object is the hash value of an OData service
  • C. Both front-end and back-end entries are generating the same S_SERVICE authorization object with same authorization values
  • D. Both front-end and back-end entries are generating the same S_SERVICE authorization object with different authorization values

正解: B,D

 

質問 45
What is the purpose of SAP Notes listed by SAP Solution Manager System Recommendations? Note: There are 2 correct answer to this question.

  • A. To recommend SAP security Notes for evaluation
  • B. To recommend Performance Notes to improve system response
  • C. To recommend SAP Hot News Notes (priority 1 and 2)
  • D. To recommend Legal Change Notes related to SAP innovations

正解: A,B

 

質問 46
Which of the following defines "Phishing"?

  • A. Acquiring sensitive information by masquerading as a trustworthy entity
  • B. Modifying an IP address of the source of the TCP/IP packet
  • C. Overloading an application with requests
  • D. Pretending to be another user

正解: A

 

質問 47
Which of the following functionalities are supported by SAP Information Lifecycle Management (ILM)?
Note: There are 3 correct answer to this question.

  • A. Alert Notification
  • B. Data Archiving
  • C. Data Destruction
  • D. Data Logging
  • E. Data retention

正解: C,E

 

質問 48
Which of the following items are addressed by Configuration Validation? Note: There are 3 correct answer to this question.

  • A. Software Packages
  • B. Critical Roles
  • C. Database Parameters
  • D. RFC Logins
  • E. Failed Transport

正解: A,C,D

 

質問 49
Which TADIR Service Object type includes business functional authorization objects used within the OData execution?

  • A. IWSC
  • B. OSOD
  • C. IWSG
  • D. IWSV

正解: D

 

質問 50
Which of the following SUIM reports can you use to determine if a user has a segregation of duty violation? Note: There are 2 correct Answers to this question.

  • A. Users With Critical Authorizations
  • B. User Comparison
  • C. Users by Complex Search
  • D. User Level Access Risk Analysis

正解: A,C

 

質問 51
......

更新された公式認定はC_SECAUTH_20認証済みのC_SECAUTH_20問題集でPDF:https://www.goshiken.com/SAP/C_SECAUTH_20-mondaishu.html