nerdexam
SAP

C_GRCAC_13 · Question #23

In the SAP GRC landscape, which of the following activities must be taken to ensure that an update to the access risk rule set in the development system will be available for risk analysis in the…

The correct answer is B. Access risk rules must be generated and inserted into the corresponding tables in the production D. The access risk rules must be downloaded from the development system and uploaded into the. According to the SAP Blogs, one of the methods to ensure that an update to the access risk rule set in the development system will be available for risk analysis in the production system is to download the access risk rules from the development system and upload them into the…

Segregation of Duties (SoD) Management

Question

In the SAP GRC landscape, which of the following activities must be taken to ensure that an update to the access risk rule set in the development system will be available for risk analysis in the production system? Note: There are 2 correct answers to this question.

Options

  • AThe connector to the production system must be configured as the Production Environment under
  • BAccess risk rules must be generated and inserted into the corresponding tables in the production
  • CEach change to a Function ID or Risk ID must be saved to its own transport request and imported
  • DThe access risk rules must be downloaded from the development system and uploaded into the

How the community answered

(26 responses)
  • A
    8% (2)
  • B
    77% (20)
  • C
    15% (4)

Explanation

According to the SAP Blogs, one of the methods to ensure that an update to the access risk rule set in the development system will be available for risk analysis in the production system is to download the access risk rules from the development system and upload them into the production system using GRAC_DOWNLOAD_RULES and GRAC_UPLOAD_RULES transactions. Therefore, D is a correct answer. Another method is to generate and insert the access risk rules into the corresponding tables in the production system using GRAC_GENERATE_RULES transaction. Therefore, B is also a correct answer. A and C are not valid activities for updating the access risk rule set, as they are related to connector configuration and transport management, respectively.

Topics

#access risk rules#transport request#dev to production#rule set deployment

Community Discussion

No community discussion yet for this question.

Full C_GRCAC_13 Practice