SAP GRC Online Quiz



Following quiz provides Multiple Choice Questions (MCQs) related to SAP GRC. You will have to read all the given answers and click over the correct answer. If you are not sure about the answer then you can check the answer using Show Answer button. You can use Next Quiz button to check new set of questions in the quiz.

Questions and Answers

Q 1 - Which of the following module of SAP GRC helps to improve the audit management process in an organization by documenting artifacts, organizing work papers, and creating audit reports?

A - GRC Access Control

B - GRC Process Control

C - GRC Audit Management

D - GRC Risk Management

Answer : C

Explanation

This is used to improve the audit management process in an organization by documenting artifacts, organizing work papers, and creating audit reports. You can easily integrate with other governance, risk and compliance solution and enables organizations to align audit management policies with business goals.

Q 2 - Which of the following comes under GRC Risk Management?

A - Operational Risk

B - Strategic Risk

C - Compliance Risk

D - Financial Risk

E - All of the above

Answer : E

Q 3 - Which of the following under GRC Access Control work center can be used to maintain role assignments that control user access to application data and functions?

A - Access Control Owners

B - User Level Simulation

C - Role Level Simulations

D - Profile Level Simulations

Answer : A

Q 4 - Which of the following access management option allows you to assign firefighter IDs to owners and assign firefighters and controllers to firefighter IDs?

A - Role Management

B - Superuser Assignment

C - Role mining group

D - Access Request creation

Answer : B

Q 5 - Which of the following transaction you can use to synchronize transactions and their descriptions in the Access Control repository?

A - GRAC_PROFILE_SYNC

B - GRAC_REP_OBJ_SYNC

C - GRAC_AUTH_SYNC

D - GRAC_ROLE_USAGE_SYNC

Answer : C

Q 6 - Which of the following can be used to define and evaluate risk scores for risk factor in each auditable entity?

A - Audit Universe

B - Audit Risk Rating

C - Audit Plan

D - None of these

Answer : B

Explanation

You can use ARR to perform the below -

  • You can find set of auditable entities and risk factors
  • Define and evaluate risk scores for risk factor in each auditable entity.
  • As per risk score, you can rate the auditable entity.

Answer : B

Q 8 - Which of the following is/are critical objects in SAP R/3 system?

A - S_USER_AUT

B - S_USER_PRO

C - S_USER_GRP

D - All of the above

Answer : D

Q 9 - To reduce the impact of risk before it actually occurs is known as?

A - Preventive Mitigation Controls

B - Detective Mitigation Controls

C - None of these

Answer : A

Q 10 - The business rule type purely depends on?

A - Business Rule Assignment

B - KRI Templates

C - Data Sources

D - None of these

Answer : C

Explanation

In SAP GRC 10.0, you can use Business rules to filter the data stream that is coming from the data sources and you can apply the user configured conditions/calculations against that data to determine if there is a problem which requires attention.

The business rule type purely depends on the data source type.

sap_grc_questions_answers.htm
Advertisements