Security & Governance Flashcards
6 cards from real ACA practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 6 Security & Governance flashcards as text
In Appian, which environment tier is intended exclusively for final user acceptance testing before production release?
Answer: UAT Environment
The UAT environment is used for stakeholder validation and acceptance testing prior to promoting changes to production.
What does the principle of least privilege mean in an Appian application context?
Answer: Users should only be granted the minimum access needed to perform their tasks
The principle of least privilege reduces security risk by ensuring users can only access what is strictly necessary for their role.
Which Appian feature allows an application to enforce different UI views for different user roles?
Answer: User Filters on Interfaces
User filters and conditional display expressions on interfaces allow different UI content to be shown based on user group membership.
What is the purpose of Appian's Connected System object in relation to security?
Answer: Centralizes and secures external system credentials used by integrations
Connected Systems store external API credentials and authentication configurations securely, preventing credential sprawl.
How does Appian handle SAML-based Single Sign-On (SSO) authentication?
Answer: Appian acts as the Service Provider, delegating authentication to the Identity Provider
In SAML SSO, Appian is the Service Provider and delegates user authentication to the organization's Identity Provider (e.g., Okta, Azure AD).
Which Appian configuration controls whether users can export record data to CSV or Excel?
Answer: Record Type export settings
The Record Type configuration includes settings to enable or disable data export capabilities for end users.