
Updated Nov-2023 Test Engine to Practice Test for Security-and-Privacy-Accredited-Professional Exam Questions and Answers!
Salesforce Security & Privacy Accredited Professional Exam Certification Sample Questions and Practice Exam
Salesforce Security & Privacy Accredited Professional certification is highly valued in the IT industry, and it is a testament to a professional's expertise in Salesforce security and privacy. Salesforce Security & Privacy Accredited Professional Exam certification can help professionals to advance their careers and open up new opportunities. It also demonstrates a professional's commitment to maintaining the highest standards of security and privacy in their organization. The Salesforce Security & Privacy Accredited Professional certification is a must-have for anyone looking to stand out in the field of Salesforce administration or development.
NEW QUESTION # 28
How many records per metric per org are displayed in Security Center?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: A
NEW QUESTION # 29
What consideration should be made when connecting Salesforce orgs hosted in different data centers?
- A. IP restrictions
- B. Fallover
- C. Scalability
- D. Data Residency
Answer: A
NEW QUESTION # 30
How do triggers and process automations deactivate before running a Data Mask configuration?
- A. Triggers and process automation do not need to be deactivated to run a configuration
- B. User will manually deactivate all automated actions before running a configuration
- C. While running a configuration, Data Mask will automatically disable triggers and process automation before the masking begins
- D. User will need to run a script in the developer console to deactivate any automated processes
Answer: C
NEW QUESTION # 31
Salesforce does not allow email or SMS text messages as verification methods for MFA. Which two reasons explain this? (2 options)
- A. SIM cards can be hacked
- B. Mobile devices can be lost or broken
- C. Entering codes from text messages is error-prone
- D. Email account credentials can be compromised
Answer: A,C
NEW QUESTION # 32
The Admin wants to make Salesforce applications more secure. Which set of security settings should be enabled to achieve this?
- A. Run Health Check, Require HTTPS, Salesforce Shield
- B. Enable ClickJack protection, Lightning Lockdown, Enable User Certificates
- C. Enable Click Jack protection, Require HTTPS, Enable Cross-Site Scripting (XSS) Protection
- D. Enable ClickJack protection, Health Check, Enable User Certificates
Answer: C
NEW QUESTION # 33
Which two date types are available when filtering on a condition that has the DATETIME object field?
- A. Within
- B. Relative
- C. Absolute
- D. Outside
Answer: A,B
NEW QUESTION # 34
You need to limit when and where from users can access Salesforce- to help reduce the risks of unauthorized access. How should you go about this.
- A. Use MFA to help ensure users are using a more secure login process
- B. Restrict Access based on Login IP Addresses but login hairs can't be set up in conjunction with this feature
- C. Restrict Access based on Login IP Addresses and use the Login Hours feature together
- D. Do not allow users to access Salesforce from outside the office.
Answer: A
NEW QUESTION # 35
Where would the user go to connect a new tenant to the Security Center app?
- A. Setup/Security Center
- B. Setup/Manage Tenants
- C. Manage Security Tab
- D. Connected Tenants Tab
Answer: D
NEW QUESTION # 36
Which filter operator is supported by Deterministic Encryption?
- A. contains
- B. equals
- C. like
- D. starts with
Answer: B
NEW QUESTION # 37
Which activity is not recommended for internal support teams after MFA is enabled?
- A. Maintaining a supply of replacement security keys
- B. Helping users recover access if they've lost or forgotten their verification methods
- C. Enabling MFA for new employees as part of the new hire onboarding process
- D. Adjusting policies that enable or disable MFA for Salesforce users
Answer: D
NEW QUESTION # 38
10. Can a customer run a penetration test against Salesforce?
- A. Some types of penetration testing are permitted, but not in production
- B. Penetration testing can be carried out at anytime by anyone
- C. No, this is not permitted under any circumstances
- D. Penetration testing is allowed, but the Salesforce Agreement needs to be signed before testing can comment
Answer: D
NEW QUESTION # 39
When enabled for streaming, Real-Time Events are published where?
- A. To independent custom object streams
- B. To the EventMonitoring subscription channel
- C. To independent Big Objects
- D. To independent event subscription channels
Answer: D
NEW QUESTION # 40
What happens to metrics in the parent tenant when a child tenant is disconnected?
- A. The data is retained in the parent tenant, but not viewable in the app.
- B. Metrics for the tenant are deleted during the next update.
- C. The user may see incomplete data in the app
- D. Metrics for the tenant are deleted immediately.
Answer: A
NEW QUESTION # 41
How does Salesforce protect your org from all other customer orgs on a multitenancy platform?
- A. Uses a unique identifier which is associated with user's session
- B. Restricts IP addresses users can log in from
- C. Leverages only classic encryption
- D. Uses only server authentication
Answer: A
NEW QUESTION # 42
Which three are key value points for Security Center?
- A. Decrease Storage Requirements
- B. Respond to Threats and Anomalies Faster
- C. Gain Visibility to Drive Insights
- D. Simplify Security Management
- E. Increase Performance
Answer: B,C,D
NEW QUESTION # 43
What will the user see in the Salesforce user interface when they view a page that includes the field on it?
- A. The field label followed by eight asterisks
- B. The field label followed by the unencrypted field value
- C. The field label followed by 256 characters of cipher text
- D. The field label followed by a message indicating that the field value is encrypted
Answer: B
NEW QUESTION # 44
How are the keys packaged in case of Cache-Only Keys
- A. In XML format
- B. Packaged using OData
- C. Using JSON Web Encryption
- D. Using JSON Web Token
Answer: C
NEW QUESTION # 45
What user permission is required to view Security Center pages and manage app configurations?
- A. Modify All Data
- B. Customize Application
- C. Manage Security Center
- D. View All Data
Answer: C
NEW QUESTION # 46
Which technology enables an admin to query for data or write custom code when enforcing a security policy?
- A. Real-Time Events
- B. Process Builder
- C. Threat Detection
- D. An apex based Transaction Security Policy
Answer: D
NEW QUESTION # 47
What do Right to be Forgotten policies automate?
- A. How to compile and send PII to customers.
- B. How PII is anonymized
- C. How and when PII is deleted.
- D. How PII is stored and archived
Answer: C
NEW QUESTION # 48
How do customers access Field Audit Trail data?
- A. Pre-built Tableau CRM app
- B. Event Log Files
- C. Set-up Audit Trail
- D. Salesforce API
Answer: C
NEW QUESTION # 49
What kind of threats can be detected by Event Monitoring Threat Detection?
- A. Cross Site Scripting, Phishing
- B. Session Hijacking, Credential Stuffing, Report Anomaly
- C. Multiple login attempts, SQL injection
- D. Login outside of IP Range, Failed Password Attempt
Answer: B
NEW QUESTION # 50
After a user completes setup of a portability policy, what API needs to be run to compile the identified PII?
- A. SOAP API
- B. REST API
- C. Portability API
- D. Metadata API
Answer: D
NEW QUESTION # 51
Which metric view holds information on the 'Password Never Expires' setting?
- A. Authentication Metrics
- B. Permission Metrics
- C. User and Profile Metrics
- D. Configuration Metrics
Answer: B
NEW QUESTION # 52
......
Certification dumps Accredited Professional Security-and-Privacy-Accredited-Professional guides - 100% valid: https://pass4sure.practicedump.com/Security-and-Privacy-Accredited-Professional-exam-questions.html