C_SEC_2405 Exam Questions
90 real C_SEC_2405 exam questions with expert-verified answers and explanations. Page 1 of 2.
- Question #1Configuration and Reporting
Where can you find information on the SAP-delivered default authorization object and value assignments? Note: There are 2 correct answers to this question.
authorization objectsSU22USOBTdefault values - Question #2Configuration and Reporting
Which SU01 user types are NOT enabled for interaction? Note: There are 2 correct answers to this question.
SU01 user typessystem usercommunications data usernon-interactive users - Question #3Integration and Extensibility
In the administration console of the Cloud Identity Services, which system property types can you add? Note: There are 2 correct answers to this question.
Cloud Identity Servicessystem propertiescredential typeidentity provisioning - Question #4Configuration and Reporting
In SAP HANA Cloud, what can you configure in user groups? Note: There are 2 correct answers to this question.
HANA Clouduser groupspassword policyclient connect restrictions - Question #5Configuration and Reporting
What authorization object can be used to restrict which users a security administrator is authorized to maintain?
S_USER_GRPauthorization objectuser administrationsecurity roles - Question #6Integration and Extensibility
What use cases are available for a Local Identity Directory? Note: There are 3 correct answers to this question.
Local Identity Directoryproxy modehybrid modeidentity management - Question #7Configuration and Reporting
If you want to evaluate catalog menu entries and authorization default values of IWSG and IWSV applications, which SUIM reports would you use? Note: There are 2 correct answers to...
SUIMIWSGIWSVauthorization reporting - Question #8Configuration and Reporting
What is the correct configuration setting in table PRGN_CUST for user assignments when transporting roles within a Central User Administration scenario?
PRGN_CUSTCentral User Administrationrole transportuser assignment - Question #9Configuration and Reporting
Which cybersecurity type does NOT focus on protecting connected devices?
cybersecurity typesIoT securityapplication securitynetwork security - Question #10Integration and Extensibility
Where do you configure the Social Media identity providers?
identity providersCloud Identity Servicessocial media authenticationBTP cockpit - Question #11Cybersecurity
Which levels of security protection are provided by Secure Network Communication (SNC)? Note: There are 3 correct answers to this question.
SNCnetwork communication securityauthenticationdata integrity - Question #12Identity and Access Management
What must you do before you can use transaction PFCG? Note: There are 2 correct answers to this question. What must you do before you can use transaction PFCG? Note: There are 2 co...
PFCGauthorization defaultsUSOBT USOBXprofile parameters - Question #13Identity and Access Management
Which application in SAP S/4HANA Cloud Public Edition allows you to upload employee information independent of the customers' HR system?
SAP S/4HANA CloudManage Workforceemployee provisioninguser management - Question #14Identity and Access Management
You are building a PFCG role for access to an SAP Fiori app on your SAP S/4HANA on-premise system. After you enter the catalog in the role menu, an entry for an OData service is mi...
PFCG rolesSAP FioriS_SERVICEOData authorization - Question #15Identity and Access Management
Where can you find SAP Fiori tiles and target mappings according to segregation of duty?
SAP FioriBusiness Catalogssegregation of dutytarget mappings - Question #16Security Operations
To connect to data sources that are NOT all based on OData, which of the following options does SAP recommend you use?
SAP Integration SuiteODatadata connectivityintegration architecture - Question #17Identity and Access Management
In SAP S/4HANA Cloud Public Edition, what can you do with the Display Authorization Trace? Note: There are 3 correct answers to this question.
Authorization TraceS/4HANA Cloudmissing authorizationsforensic analysis - Question #18Identity and Access Management
Which limitations apply to restricted users in SAP HANA Cloud? Note: There are 3 correct answers to this question.
SAP HANA Cloudrestricted usersdatabase accessSQL restrictions - Question #19Identity and Access Management
For users with system administration authorization, which additional functions are provided by the SAP Easy Access menu? Note: There are 2 correct answers to this question.
SAP Easy Accesssystem administrationrole creationuser creation - Question #20Identity and Access Management
When creating PFCG roles for SAP Fiori access, what is included automatically when adding a catalog to the menu of a back-end PFCG role? Note: There are 2 correct answers to this q...
PFCG rolesSAP FioriIWSV TADIR serviceauthorization defaults - Question #21Identity and Access Management
When you maintain authorizations for SAPUI5 Fiori apps, which of the following object types is the front-end authorization object type?
SAPUI5 Fioriauthorization objectsTADIR IWSVfront-end authorization - Question #22Identity and Access Management
In the administration console of the Cloud Identity Services, for which system type can you define both read and write transformations?
Cloud Identity Servicesproxy systemsread write transformationsidentity provisioning - Question #23Security Governance and Risk Management
Which solution is NOT used to identify security recommendations for the SAP Security Baseline?
SAP Security Baselinesecurity recommendationsCode Vulnerability Analyzersecurity tools - Question #24Identity and Access Management
Which tool can you use to modify the entities schema content across multiple repositories?
Cloud Identity Servicesschema managemententitiesidentity provisioning - Question #25Identity and Access Management
Which archiving objects are relevant for archiving change documents for user master records? Note: There are 2 correct answers to this question.
user master recordsarchiving objectschange documentsdata archiving - Question #26Identity and Access Management
Which authorization objects can be used to restrict access to SAP Enterprise Search models in the SAP Fiori launchpad? Note: There are 2 correct answers to this question.
SAP Enterprise Searchauthorization objectsFiori launchpadaccess restriction - Question #27Identity and Access Management
Which code does the authority-check return when a user does NOT have any authorizations for the authorization object checked?
authority-checkreturn codesSAP authorizationABAP - Question #28Identity and Access Management
In SAP HANA Cloud, who has access to a database object?
SAP HANA Clouddatabase objectsschema ownerobject access control - Question #29Identity and Access Management
What are some of the rules for SAP-developed roles in SAP S/4HANA Cloud Public Edition? Note: There are 3 correct answers to this question.
S/4HANA Cloudrole maintenanceBusiness Catalogsauthorization defaults - Question #30Identity and Access Management
Which object type is assigned to activated OData services in transaction SU24?
OData servicesSU24IWSVauthorization object types - Question #31Identity and Access Management
In S/4HANA on-premise, which of the following combinations is required to grant a business user access to data from a Core Data Services (CDS) view using the standard ABAP authoriz...
CDS viewsS_RS_AUTHABAP authorizationaccess conditions - Question #32Identity and Access Management
Which of the following functions within SAP GRC Access Control support access certification and review? Note: There are 2 correct answers to this question.
GRC Access Controlaccess certificationSOD reviewuser reaffirmation - Question #33Identity and Access Management
Which user types can log on to the SAP S/4HANA system in interactive mode? Note: There are 2 correct answers to this question.
user typesdialog userservice userinteractive logon - Question #34Identity and Access Management
An authorization based on what object is required for trusted system access to an SAP Fiori back-end server?
trusted system accessS_RFCACLSAP FioriRFC authorization - Question #35Identity and Access Management
Which of the following user types are excluded from some general password-related rules, such as password validity or initial password? Note: There are 2 correct answers to this qu...
user typespassword policyservice usersystem user - Question #36Security Monitoring
Which log types are available in the Administration Console of Cloud Identity Services? Note: There are 2 correct answers to this question.
Cloud Identity Servicesaudit logstroubleshooting logschange logs - Question #37Identity and Access Management
Which optional components can be included when transporting a role definition from the development system to the quality assurance system? Note: There are 3 correct answers to this...
role transportuser assignmentsprofile generationrole definition - Question #38Cybersecurity
Which of the following are Security Goals? Note: There are 2 correct answers to this question.
security goalsinformation integrityidentity authenticationCIA triad - Question #39Identity and Access Management
Which functions in SAP Access Control can be used to approve or reject a user's continued access to specific security roles? Note: There are 2 correct answers to this question.
SAP Access Controluser access reviewrole reaffirmationaccess certification - Question #40Identity and Access Management
What is the authorization object required to define the start authorization for an SAP Fiori legacy Web Dynpro application?
S_STARTSAP FioriWeb Dynproauthorization objects - Question #41Identity and Access Management
Which protocol is the industry standard for provisioning identity and access management in hybrid landscapes?
SCIMidentity provisioninghybrid landscapeIAM protocols - Question #42Identity and Access Management
Which SAP Fiori deployment option requires the Cloud connector?
SAP FioriCloud ConnectorBTPdeployment options - Question #43Identity and Access Management
Which of the following allow you to control the assignment of table authorization groups? Note: There are 2 correct answers to this question.
table authorization groupsV_DDAT_54V_BRG_54authorization defaults - Question #44Identity and Access Management
After you maintained authorization object S_TABU_DIS and ACTVT field value 02 as authorization defaults for transaction SM30 in your development system, what would be the correct o...
authorization defaultstransport managementSU25workbench transport - Question #45Identity and Access Management
Which of the following services does the Identity Authentication Service provide? Note: There are 2 correct answers to this question.
Identity Authentication ServiceSSOauthenticationcloud identity - Question #46Identity and Access Management
Which of the following can you use to check if there is an application start lock on an application contained in a PFCG role? Note: There are 2 correct answers to this question.
PFCG rolesapplication start lockSUIMtransaction lock - Question #47Security Monitoring
What happens to data within SAP Enterprise Threat Detection during the aggregation process? Note: There are 3 correct answers to this question.
SAP Enterprise Threat Detectiondata aggregationpseudonymizationnormalization - Question #48Identity and Access Management
How does Rapid Activation support customers during the SAP S/4HANA on-premise implementation process? Note: There are 3 correct answers to this question.
Rapid ActivationSAP FioriSAP Activatebusiness role activation - Question #49Security Monitoring
Which solution analyzes an SAP system's administrative areas to safeguard against potential threats?
SAP EarlyWatch Alertsystem monitoringsecurity analysisadministrative areas - Question #50Identity and Access Management
What does a status text value of "Old" mean during the maintenance of authorizations for an existing role?
role authorization maintenancePFCGauthorization statusmerge process