[2023年05月]更新のSalesforce Security-and-Privacy-Accredited-Professional公式認定ガイドPDF [Q10-Q34]

Share

[2023年05月]更新のSalesforce Security-and-Privacy-Accredited-Professional公式認定ガイドPDF

試験Security-and-Privacy-Accredited-Professional Salesforce Security & Privacy Accredited Professional Exam


Salesforceセキュリティおよびプライバシー認定プロフェッショナル試験は、Salesforceセキュリティおよびプライバシーの分野でのプロフェッショナルのスキルと知識を正当化する貴重な認定プログラムです。この認定は、雇用者から高い評価を受け、新しい求人機会や高い給与をもたらす可能性があります。Salesforceを日々使用し、そのセキュリティとプライバシーを管理する責任がある場合、この認定は強くお勧めします。


Salesforce Security-and-Privacy-Accredited-Professional(Salesforce Security&Privacy Accredited Professional)認定試験は、Salesforceシステムのセキュリティとプライバシーに責任を持つ専門家を対象に設計されています。この認定試験は、データセキュリティとプライバシーの確保、ユーザーアクセスの管理、およびSalesforceにおけるセキュリティコントロールの実装に関する候補者のスキルと知識を検証します。


Salesforce Security-and-Privacy-Accredited-Professional認定試験は、Salesforceプラットフォームとそのセキュリティ機能に深い理解が必要な厳しい試験です。候補者は、データのセキュリティ確保、ユーザーアクセスの管理、規制要件の遵守に関するベストプラクティスの知識を証明する必要があります。試験には、データプライバシーと機密情報を不正アクセスから保護する方法に関する質問も含まれます。

 

質問 # 10
What are the actions that an admin can take with Transaction Security?

  • A. Block, Multi-Factor Authentication, and Notifications
  • B. Launch Workflow, Require Approval, Send SMS Text
  • C. Freeze User, End Session, require 2FA
  • D. Obfuscate, Encrypt, de-identify

正解:A


質問 # 11
When is data from a newly connected tenant updated in the Security Center App?

  • A. Immediately
  • B. Upon triggering the refresh
  • C. During the next daily update
  • D. When the API is called

正解:C


質問 # 12
Which option does not require My Domain?

  • A. The ability to brand the login page
  • B. Password policies
  • C. OpenID Connect into a Salesforce org
  • D. SAML SSO into a Salesforce org

正解:B


質問 # 13
Which Real-Time Events can be used with Transaction Security?

  • A. ApiEvent, LoginEvent, LightningURI Event
  • B. ApiEvent, LogoutEvent, UriEvent
  • C. ApiEvent, LoginEvent, MobileEmailEvent
  • D. ApiEvent, ReportEvent, LoginEvent

正解:D


質問 # 14
Other than IdentityVerificationEvent and LoginEvent, Real-Time Events are stored for how long when enabled for storage

  • A. One year
  • B. Thirty days
  • C. six months
  • D. Three months

正解:C


質問 # 15
What are three implementation activities that should happen prior to enabling MFA for users?

  • A. Enable the Salesforce Authenticator app for the org/tenant
  • B. Document processes and troubleshooting information
  • C. Create the Identity Verification Methods reportTest registration and login flows for each supported verification method
  • D. Distribute verification methods and registration instructions to users

正解:A、B、D


質問 # 16
Which three capabilities are part of the Health Check tool?

  • A. Align your org's security setting with Salesforce-recommended security standards
  • B. Verify that multiple Salesforce applications have the same level of security
  • C. Access event log files to track user activity and feature adoption and troubleshoot issues
  • D. Identify and fix vulnerabilities in your security settings
    Organize user access logs

正解:A、B、D


質問 # 17
Which three objects is monitored by the Consent Event Stream (CES)?

  • A. Contact
  • B. Case
  • C. Authorization Form Consent
  • D. Lead
  • E. Opportunity

正解:A、C、D


質問 # 18
What is an example of the principle of least privilege?

  • A. Using single sign on
  • B. Requiring unique passwords
  • C. Limiting the number of users with admin rights
  • D. Prohibiting reuse of passwords on multiple accounts

正解:C


質問 # 19
What is the primary difference between Data Mask and Data Encryption?

  • A. Data encryption is an add on feature to the Data Mask product
  • B. Data encryption is used for masking data in a production environment
  • C. Data masking prevents developers or other users from viewing sensitive data in the user interface or exporting it as plain text
  • D. Data Mask prevents malicious attackers from accessing or interacting with sensitive data at rest in the data center.

正解:D


質問 # 20
Which of the following is a blocker to rolling out MFA?

  • A. Licensing for Transaction Security Policies
  • B. Users refusing to install applications on their personal phones
  • C. Licensing for Login Flows
  • D. Shared accounts or credentials

正解:D


質問 # 21
The Admin wants to make Salesforce applications more secure. Which set of security settings should be enabled to achieve this?

  • A. Enable ClickJack protection, Lightning Lockdown, Enable User Certificates
  • B. Run Health Check, Require HTTPS, Salesforce Shield
  • C. Enable Click Jack protection, Require HTTPS, Enable Cross-Site Scripting (XSS) Protection
  • D. Enable ClickJack protection, Health Check, Enable User Certificates

正解:C


質問 # 22
What user permission is required to view Security Center pages and manage app configurations?

  • A. Manage Security Center
  • B. Modify All Data
  • C. View All Data
  • D. Customize Application

正解:A


質問 # 23
What are two differences between MFA and Device Activation?

  • A. Users can opt out of receiving Device Activation challenges, but can't opt out of MFA challenges
  • B. MFA is enabled for all users by default, admins must enable Device Activation
  • C. Device Activation allows SMS as a verification method while MFA does not
  • D. MFA challenges users on every login; Device Activation challenges users only when they log in from a new device

正解:D


質問 # 24
If a user loses their verification method, what are three of the recommended steps an admin should take?

  • A. Monitor the user's account activity for suspicious activity
  • B. Ask the user to submit a lost verification method report before proceeding with any other steps Post about the incident to all Salesforce users as a learning opportunity
  • C. Generate a temporary verification code so the user can log in
  • D. Disconnect the lost verification method

正解:A、C、D


質問 # 25
What is the type and length of the key used to encrypt data?

  • A. AES-256
  • B. AES-192
  • C. 3DES
  • D. RSA-4096

正解:A


質問 # 26
How does Salesforce protect your org from all other customer orgs on a multitenancy platform?

  • A. Restricts IP addresses users can log in from
  • B. Uses a unique identifier which is associated with user's session
  • C. Leverages only classic encryption
  • D. Uses only server authentication

正解:B


質問 # 27
For products built on the Salesforce Platform, which three tools can admins use to monitor MFA usage patterns?

  • A. Custom list view of Users in Setup
  • B. Multi-Factor Authentication Assistant
  • C. Multi-Factor Authentication Dashboard App
  • D. Login History page in Setup
  • E. Identity Verification Methods report

正解:A、C、E


質問 # 28
If the client wants to record the set up changes users are making to fields for a three years, how would the client achieve this with the standard product?

  • A. Leverage Platform Encryption and enable the archive feature
  • B. Buy Shield as this provides features that can do this
  • C. The Setup Audit Trail is good for 180 days so, use this together with a process of exporting the changes out of Salesforce to another system.
  • D. The Setup Audit Trail is good for 5 years so can be used to record this as standard.

正解:C


質問 # 29
After installing, what tab in Privacy Center 360 does a user need to input their Heroku credentials during the setup process?

  • A. Setup
  • B. Settings
  • C. Home
  • D. Remote Site Settings

正解:D


質問 # 30
Which two options are good ways to check Filter Criteria before running a Data Mask configuration

  • A. Test the query on workbench or dev console.
  • B. Execute script in filtered view
  • C. Run an initial configuration from end to end without filtering
  • D. Click Query Preview in the Data Filter to preview your query in SOOL.

正解:A


質問 # 31
What format can Event Log Files be downloaded via API?

  • A. JSON
  • B. CSV
  • C. XML
  • D. serialized

正解:B


質問 # 32
Which masking option should the client use if they want to replace data with familiar values?

  • A. Transform
  • B. Replace From Library
  • C. Replace Using Pattern
  • D. Replace with Random Characters

正解:B


質問 # 33
What will the user see in the Salesforce user interface when they view a page that includes the field on it?

  • A. The field label followed by 256 characters of cipher text
  • B. The field label followed by the unencrypted field value
  • C. The field label followed by eight asterisks
  • D. The field label followed by a message indicating that the field value is encrypted

正解:B


質問 # 34
......

無料Security-and-Privacy-Accredited-Professional試験問題集試験点数を伸ばそう:https://www.passtest.jp/Salesforce/Security-and-Privacy-Accredited-Professional-shiken.html

2023年最新の実際に出るSecurity-and-Privacy-Accredited-Professional問題集には試験のコツがあるPDF試験材料:https://drive.google.com/open?id=1timX_dCMHiR5P28cx32WvYrKuzOfXYez