Security and Restricting Access

Restricting access through ACLs, roles, GlideSystem security methods, and application scope protections.

This domain addresses securing ServiceNow applications through multiple layers of access control. Candidates must know how to restrict access to applications and application modules using roles and user criteria, manually and automatically create, test, and debug Access Control Lists (ACLs) for table, field, and record-level security. The domain also covers using GlideSystem methods to script security logic within business rules and other server-side scripts, and leveraging application scope to protect application artifacts from unauthorized modification. Understanding ACL evaluation order, debugging ACL failures, and implementing data policies for server-side field validation are essential skills. (20% of exam)
5 minutes 5 Questions

Security and Restricting Access in ServiceNow is a critical concept for Certified Application Developers, encompassing multiple layers of protection to safeguard data and functionality within the platform. **Access Control Lists (ACLs):** ACLs are the primary mechanism for controlling access to ta…

Concepts covered: Role-Based Access Control, Access Control Lists (ACLs), ACL Rule Conditions and Scripts, ACL Evaluation Order, Table-Level vs Field-Level ACLs, ACL Debugging, GlideSystem Security Methods, Application Scope Security, User Criteria, Data Policies for Security, Contextual Security (gs.hasRole, gs.getUser)

Test mode:
More Security and Restricting Access questions
501 questions (total)