Security and Access (13%) Flashcards

1
Q

What checks are done when users try to access a Salesforce organization?

A

Profile Level Login Hours, Profile Level IP Ranges, Company Level Trusted IP Ranges, Activation Code Validation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are examples of Standard Profiles?

A

Standard User, Solution Manager, Marketing User, Contract Manager, Read Only, System Administrator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Why and how are Custom Profiles created?

A

There are restrictions on what can be changed on a standard profile. Custom profiles are created by cloning a standard profile to be able to customize profile settings.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How is object access controlled?

A

Object access is controlled at the profile-level, including permission sets and visibility to the tab.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are permission sets?

A

A group of permissions and settings that can be assigned to one or more users that grant additional privileges beyond the profile

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What do profile permissions grant?

A

Permissions to app-specific actions, customized actions built, or system-wide actions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How is the role hierarchy related to record access?

A

Users will have access to other users’ records if they have a role above the record owner in the role hierarchy and grant access through hierarchies is enabled.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What do organization-wide default settings do?

A

Determine access to records the user does not own and sets base record access for the org.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How do Sharing Rules work?

A

Rules can be created to grant access to groups of users for certain records based on record owner or criteria.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What does field-level security control?

A

Controls if a field is visible or read-only at the profile level

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What should be considered when changing OWD settings?

A

If increasing default access, changes will take effect immediately. If decreasing, changes may take significant time depending on data volumes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is Manual Sharing?

A

Manual sharing allows a user to use the ‘Sharing’ button to grant access to a specific record to other users, roles, roles & subordinates, territories, territories & subordinates, and public groups.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How does the Security Health Check work?

A

Security Health Check measures setting values in Password Policies, Network Access Config and Session Settings against baseline values and calculates a percentage score to indicate risk. 100% means all settings meet or exceed the standard.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the purpose of a public group?

A

It’s a way of grouping users, roles, and territories so that sharing settings and permissions can be granted efficiently.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

When is identity verification invoked?

A

When a user logs in from an unrecognized (based on cookies) browser or device, and outside the trusted IP range

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What can be enabled that helps the administrator spot suspicious login activity?

A

Login Forensics

17
Q

How can folder access be controlled?

A

Folders can be private or shared. Permissions and visibility can be set for users, roles, territories, or public groups.

18
Q

What are folders used for?

A

To store and organize reports, documents, dashboards and email templates

19
Q

What are two methods to find a folder quickly in the Salesforce org?

A

Folders can be favorited or searched for in Global Search.

20
Q

What are the different access levels that can be granted to a folder?

A

Viewer, Editor (edit, move, save and delete) or Manager (share and rename folder)

21
Q

How can reports and dashboards be organized in Lightning Experience?

A

A subfolder hierarchy can be created to organize reports and dashboards in a logical structure.

22
Q

What are the different risk categories associated with a Security Health Check in Salesforce?

A

High, Medium, Low, and Informational

23
Q

Which sharing setting allows a user to manually share their own user record with other users of an organization?

A

‘Manual User Record Sharing’ checkbox on the ‘Sharing Settings’ page in Setup

24
Q

Which organization-wide default sharing setting can be used for the Campaign Member object to allow all users to see only the campaign members associated with the campaigns they have access to?

A

Controlled by Campaign

25
Q

What password requirements can an administrator set?

A

Minimum password length, complexity, password history enforcement, expiration period, minimum password lifetime