Access Questions and Answers Graded
A+
What is true regarding the Security Health Check? - answer Values are compared
against the Salesforce baseline standard and settings are grouped into high
risk/medium risk/low risk/informational.
An administrator can define a sharing rule to share records with a public group. Which
can be included in a public group? - answer Users, other public groups, roles.
All users have Standard Profile but administrator wants all users to read/create/edit but
not delete and only managers to be able to delete. What should he do? - answer Clone
standard profile and assign to all users, remove delete permission in cloned profile and
create permission set that includes permission to delete contacts and assign to
managers.
What options are available to set the length of time after which the system logs out
inactive users? - answer Session timeout can be set at the organization or profile level.
Global Inc. developed new recruitment application for supporting global recruiting team
and administrator wants to give access to this new application to users from the HR and
recruitment team that have not used Salesforce before and don't need access to other
Salesforce apps. What is the best option? - answerCreate a new profile by cloning an
existing profile and modify it to only include permissions to the app.
What auditing features are available in Salesforce? - answerField history tracking, setup
audit trail, and login history.
The Marketing Director of Cosmic Supermart wants Salesforce Users to see only the
campaign managers whose lead or contact records they can access in Salesforce.
What can administrator do to fulfill this requirement? - answerModify the organization-
wide sharing default setting for the Campaign Member object.
Salesforce administrator is tasked with securing the org by the company leadership.
What feature should the administrator start with that can be used to identify and fix
security vulnerabilities in the org? - answerHealth check
An account executive is regularly working with a number of colleagues on opportunities.
One of the colleagues should be able to view but not update the opportunities. What is
the best way to give the other people he is working with view and update access to the
, opportunities and track their role on the opportunity? - answerCreate the opportunity
team and set access for each user.
A Salesforce Admin wants to insert records using Data Loader but doesn't have access
to his email where the security token has been sent. How can he proceed? - answerAdd
the IP address to the trusted IP ranges.
Michelle is a sales associate who is required to share certain records of a custom object
"Delivery" with 4 sales managers and only the records with the "Status" field of
"Pending" should be shared with the sales managers. The organization-wide default
setting of the custom object is set to "private" and the "grant access using hierarchies"
checkbox is deselected and no other user in the organization should have access to
these records if they don't already have access. How can this be achieved? -
answerCreate a sharing rule for the Delivery object to share the records with a public
group that contains the sales managers who should have access.
In a Salesforce org, only activity owner or users above it in the role hierarchy should be
able to edit or delete the activity but those who are able to view the parent record
related to the activity should be able to view and report on the activity. What
organization-wide default sharing setting should be used for the "activity" object for this
requirement? - answerPrivate
Julie the administrator wants to make the org more secure with network-based security.
When should she use network-based security? - answerWhen she wants to limit when
people can login, when she wants to limit where people can login, when she wants to
make it difficult to use stolen credentials.
What do profile control access to? - answerWhich fields are read only, which Apex
classes and Visualforce pages users can access, and which record types are available
to users
In a private sharing model, if the administrator needs to make some exceptions to give
access to records, what features can you use? - answerManual sharing, sharing rules,
and account teams.
All users in a Salesforce org have been assigned to a standard profile that allow them to
read, create, edit, and delete records of most of the standard objects. The administrator
needs to provide access to a group of external users but would like to ensure that they
have read only access to all the major standard objects. What is the best way to
accomplish this? - answerAssign the standard 'read only' profile to the external users.
Which are the default password policy settings or requirements imposed by Salesforce
when a password is set? - answerA password cannot contain the user's username, a
password must contain at least 8 characters, the last 3 passwords are stored and
cannot be reused when users are changing the password