ExamGecko
Home Home / Salesforce / Certified Security and Privacy Accredited Professional

Salesforce Certified Security and Privacy Accredited Professional Practice Test - Questions Answers

Question list
Search
Search

Salesforce does not allow email or SMS text messages as verification methods for MF

A.
Which two reasons explain this? (2 options)
A.
Which two reasons explain this? (2 options)
Answers
B.
Entering codes from text messages is error-prone
B.
Entering codes from text messages is error-prone
Answers
C.
Mobile devices can be lost or broken
C.
Mobile devices can be lost or broken
Answers
D.
Email account credentials can be compromised
D.
Email account credentials can be compromised
Answers
E.
SIM cards can be hacked
E.
SIM cards can be hacked
Answers
Suggested answer: A, D

What kind of threats can be detected by Event Monitoring Threat Detection?

A.
Session Hijacking, Credential Stuffing, Report Anomaly
A.
Session Hijacking, Credential Stuffing, Report Anomaly
Answers
B.
Cross Site Scripting, Phishing
B.
Cross Site Scripting, Phishing
Answers
C.
Login outside of IP Range, Failed Password Attempt
C.
Login outside of IP Range, Failed Password Attempt
Answers
D.
Multiple login attempts, SQL injection
D.
Multiple login attempts, SQL injection
Answers
Suggested answer: A

Which three MFA verification methods are supported by MuleSoft Anypoint Platform?

A.
SMS text messages
A.
SMS text messages
Answers
B.
Encryption Algorithm
B.
Encryption Algorithm
Answers
C.
Built-in Authenticators
C.
Built-in Authenticators
Answers
D.
Security Keys
D.
Security Keys
Answers
E.
Salesforce Authenticator
E.
Salesforce Authenticator
Answers
Suggested answer: C, D, E

MFA is enabled at which level for Marketing Cloud-Email Studio, Mobile Studio, and Journey Builder?

A.
User level
A.
User level
Answers
B.
Top-level account
B.
Top-level account
Answers
C.
Role level
C.
Role level
Answers
D.
Business unit level
D.
Business unit level
Answers
Suggested answer: B

How often are Security Center metrics updated?

A.
Daily
A.
Daily
Answers
B.
Weekly
B.
Weekly
Answers
C.
Hourly
C.
Hourly
Answers
D.
Every 30 days
D.
Every 30 days
Answers
Suggested answer: A

What is an implication of connecting or disconnecting a tenant during the update period?

A.
All previous metrics are erased
A.
All previous metrics are erased
Answers
B.
This can cause partial data to load
B.
This can cause partial data to load
Answers
C.
Data will not be loaded until the following day
C.
Data will not be loaded until the following day
Answers
D.
An error message will display to the user
D.
An error message will display to the user
Answers
Suggested answer: B

Where would the user go to connect a new tenant to the Security Center app?

A.
Setup/Manage Tenants
A.
Setup/Manage Tenants
Answers
B.
Setup/Security Center
B.
Setup/Security Center
Answers
C.
Manage Security Tab
C.
Manage Security Tab
Answers
D.
Connected Tenants Tab
D.
Connected Tenants Tab
Answers
Suggested answer: D

User in one of the monitored orgs has been granted the 'Modify All Data' permission. Where can the consultant see how the permission was granted?

A.
View the Configuration Metrics detail page.
A.
View the Configuration Metrics detail page.
Answers
B.
View the detail page of the 'View All Data' metric, and check the Context column on the change for the user.
B.
View the detail page of the 'View All Data' metric, and check the Context column on the change for the user.
Answers
C.
See the Permissions dashboard.
C.
See the Permissions dashboard.
Answers
D.
View the detail page of the 'Modify All Data' metric, and check the Context column on the change for the user.
D.
View the detail page of the 'Modify All Data' metric, and check the Context column on the change for the user.
Answers
Suggested answer: D

When is data from a newly connected tenant updated in the Security Center App?

A.
Upon triggering the refresh
A.
Upon triggering the refresh
Answers
B.
During the next daily update
B.
During the next daily update
Answers
C.
Immediately
C.
Immediately
Answers
D.
When the API is called
D.
When the API is called
Answers
Suggested answer: B

Which activity is not recommended for internal support teams after MFA is enabled?

A.
Adjusting policies that enable or disable MFA for Salesforce users
A.
Adjusting policies that enable or disable MFA for Salesforce users
Answers
B.
Helping users recover access if they've lost or forgotten their verification methods
B.
Helping users recover access if they've lost or forgotten their verification methods
Answers
C.
Maintaining a supply of replacement security keys
C.
Maintaining a supply of replacement security keys
Answers
D.
Enabling MFA for new employees as part of the new hire onboarding process
D.
Enabling MFA for new employees as part of the new hire onboarding process
Answers
Suggested answer: A
Total 108 questions
Go to page: of 11