nerdexam
RSA

050-SEPROGRC-01 · Question #67

If an RSA Archer user cannot see an application that does exist within the system, what should the administrator check first?

The correct answer is B. She should verify the user has been assigned a role that grants access to the application. RSA Archer uses role-based access control to govern application visibility, making role assignment the first and most direct thing to verify when a user cannot see an application.

Customization and Configuration of Archer Modules

Question

If an RSA Archer user cannot see an application that does exist within the system, what should the administrator check first?

Options

  • AShe should verify the user belongs to at least one group.
  • BShe should verify the user has been assigned a role that grants access to the application.
  • CShe should confirm the user is named within a Record Permissions field within the application.
  • DShe should verify the user has been granted access rights to Private fields within the application.

How the community answered

(36 responses)
  • A
    14% (5)
  • B
    78% (28)
  • C
    6% (2)
  • D
    3% (1)

Why each option

RSA Archer uses role-based access control to govern application visibility, making role assignment the first and most direct thing to verify when a user cannot see an application.

AShe should verify the user belongs to at least one group.

Group membership alone does not grant application access; roles - which may be assigned directly or inherited through a group - are what determine application-level access.

BShe should verify the user has been assigned a role that grants access to the application.Correct

In RSA Archer, access to applications is governed by roles assigned to users, either directly or through group membership. If a user cannot see an application that exists, the most probable and foundational cause is that none of their assigned roles grant access to that application. Checking role assignment addresses the primary access layer before investigating more granular settings like record or field permissions.

CShe should confirm the user is named within a Record Permissions field within the application.

Record Permissions fields control access to individual records within an application, not visibility of the application itself in the navigation.

DShe should verify the user has been granted access rights to Private fields within the application.

Private field access rights govern whether a user can see specific fields inside an application they can already access, not whether the application is visible to them at all.

Concept tested: RSA Archer role-based application access control

Topics

#access control#roles#application visibility#troubleshooting access

Community Discussion

No community discussion yet for this question.

Full 050-SEPROGRC-01 Practice