The Security Settings page in SAP Emarsys is a critical administrative interface accessible only to Account Owners, allowing them to configure security levels for account access and data management. According to the official SAP Emarsys documentation, the correct answers areA(Set up IP access control) andB(Define the permitted email domains). Below is a detailed explanation of each option, validated against Emarsys resources, to clarify why these two are correct and the others are not.
A. Set up IP access control:
Verified Answer: Correct.
Explanation: Account Owners can configure IP access control on the Security Settings page to enhance account security. This feature restricts login access to approved IP addresses, requiring two-step authentication for logins from unrecognized IPs. The documentation states, "Set up IP access control: This is an optional, but highly recommended, security feature that requires two-step authentication for all login attempts from unrecognized IP addresses" (reference: "Security settings:: Your account Security Settings," updated November 12, 2024). When enabling this feature, Account Owners can define allowlisted IP addresses or ranges, ensuring that users logging in from these IPs can use only their username and password, while others must complete additional verification. This action is a core capability of the Security Settings page, making option A correct.
B. Define the permitted email domains:
Verified Answer: Correct.
Explanation: Another key action available to Account Owners on the Security Settings page is defining permitted email domains. This setting ensures that all users in theaccount have email addresses from approved domains, as Emarsys only sends invitation emails and security-related communications (e.g., password resets) to these domains. The documentation confirms, "Define the permitted email domains: All the users in your account must have valid email addresses that belong to a domain listed here" (reference: "Security settings:: Your account Security Settings," updated November 12, 2024). At least one domain must be specified (e.g., the Account Owner’s domain), and multiple domains can be added as needed. This is a fundamental security configuration task exclusive to the Security Settings page, validating option B.
C. Create external events:
Verified Answer: Incorrect.
Explanation: Creating external events is not an action performed on the Security Settings page. External events in SAP Emarsys are used to trigger automated actions (e.g., emails or program entries) based on data imports or API calls, and their setup occurs in theAutomation Centeror via API configurations, not under Security Settings. The documentation specifies that external events are managed through "Automation > External Events" or API integration settings (reference: "External Events Setup," updated October 2024), and the Security Settings page focuses solely on access and data management controls (e.g., IP restrictions, email domains, API credentials). Thus, this action is outside the scope of the Security Settings page, making option C incorrect.
D. Deactivate users:
Verified Answer: Incorrect.
Explanation: Deactivating users is an administrative task performed on theUser Managementpage, not the Security Settings page. Account Owners can deactivate user profiles to prevent login access (e.g., if credentials are compromised) by navigating toManagement > User Management > Users, selecting a user, and using the deactivate option. The documentation states, "As Account Owner, you can also edit user profiles on the User Management page, as well as deactivate and reactivate them" (reference: "Creating and managing users," updated June 10, 2024). While security-related, this action is distinct from the configurations available on the Security Settings page, which focuses on account-wide settings rather than individual user management, disqualifying option D.