Security and Access Control Flashcards
7 cards from real MDM practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Security and Access Control flashcards as text
In Informatica MDM, which tool is used by administrators to configure roles, assign users, and set privileges?
Answer: Hub Console Security Manager
The Hub Console's Security Manager is the administrative interface where MDM administrators define roles, assign users to roles, and configure resource privileges.
A data steward can edit records in MDM Data Director but cannot delete them. Which privilege configuration explains this?
Answer: The role has UPDATE but not DELETE privilege on the relevant base objects
In MDM Hub, UPDATE and DELETE are separate privileges on base objects, so a role can be granted UPDATE without DELETE to allow editing but not removal.
What is the purpose of a 'package' in Informatica MDM's security model?
Answer: A query-based view of base object data that can be secured independently
A package in MDM Hub is a pre-configured query (similar to a database view) that presents a subset of base object fields and can be assigned its own READ privilege separate from the underlying base object.
In Informatica MDM, which workflow-related security concern arises when ActiveVOS tasks are assigned to user roles?
Answer: ActiveVOS uses its own separate role store independent of MDM Hub roles
ActiveVOS maintains its own security realm, so workflow task assignments use ActiveVOS-specific roles that must be mapped or maintained separately from MDM Hub roles.
Which MDM security feature prevents a user from viewing records where a specific field equals a restricted value, such as records from a confidential division?
Answer: Data filters
Data filters in Informatica MDM append dynamic WHERE conditions to queries, preventing users from retrieving records that match restricted field values.
How does Informatica MDM handle password policies when using internal (non-LDAP) user authentication?
Answer: Password policies are enforced by the underlying application server (e.g., JBoss/WebLogic)
When using internal authentication, Informatica MDM relies on the Java EE application server's security realm and its password policy enforcement mechanisms.
In Informatica MDM's role hierarchy, what distinguishes an 'admin' role from a standard data steward role?
Answer: Admin roles can access the Hub Console configuration tools; data steward roles are limited to data operations
Admin roles in MDM grant access to configuration and administrative functions in the Hub Console, while data steward roles are scoped to data viewing, editing, and workflow tasks.