SAP GRC Online Quiz



Following quiz provides Multiple Choice Questions (MCQs) related to SAP GRC. You will have to read all the given answers and click over the correct answer. If you are not sure about the answer then you can check the answer using Show Answer button. You can use Next Quiz button to check new set of questions in the quiz.

Questions and Answers

Q 1 - Which of the following SAP module allows organization to manage regulations and compliance and remove any risk in managing organizations key operations?

A - SAP BW

B - SAP PI

C - SAP GRC

D - SAP SRM

Answer : C

Explanation

SAP Governance, Risk and Compliance solution enables organization to manage regulations and compliance and remove any risk in managing organizations key operations. As per changing market situation organizations are growing and rapidly changing and inappropriate documents, spreadsheets are not acceptable for external auditors and regulators.

Q 3 - Which of the following under GRC Access Control work center can be used to maintain role assignments that control user access to application data and functions?

A - Access Control Owners

B - User Level Simulation

C - Role Level Simulations

D - Profile Level Simulations

Answer : A

Q 4 - Which of the following roles can be used to grant access to Emergency Access Management?

A - SAP_GRAC_END_USER

B - SAP_GRAC_SUPER_USER_MGMT_USER

C - SAP_GRAC_SPM_FFID

D - SAP_GRAC_RULE_SETUP

Answer : B

Q 6 - To create an Audit Risk Rating, which of the following Work Center should be used?

A - Reports and Analytics

B - Assessments

C - Internal Audit Management

D - Access Management

Answer : C

Q 7 - Arrange the following steps under Risk Management Process in correct order -

Risk Recognition

Mitigation

Analysis

Remediation

Rule Building and Validation

Continuous Compliance

A - 1,2,3,4,5,6

B - 1,5,3,4,2,6

C - 1,5,3,2,4,6

D - 1,5,2,3,4,6

Answer : B

Q 8 - What is the maximum number of authorizations in a role?

A - 100

B - 150

C - 200

D - 250

Answer : B

Q 9 - To reduce the impact of risk before it actually occurs is known as?

A - Preventive Mitigation Controls

B - Detective Mitigation Controls

C - None of these

Answer : A

Q 10 - The business rule type purely depends on?

A - Business Rule Assignment

B - KRI Templates

C - Data Sources

D - None of these

Answer : C

Explanation

In SAP GRC 10.0, you can use Business rules to filter the data stream that is coming from the data sources and you can apply the user configured conditions/calculations against that data to determine if there is a problem which requires attention.

The business rule type purely depends on the data source type.

sap_grc_questions_answers.htm
Advertisements