Tech4Examでは、学習スタイルに合わせてPDF版・デスクトップテストエンジン・オンラインテストエンジンの3つの形態をご用意しています。自宅のパソコンでじっくり解くもよし、移動中にS90.18の練習問題をスマートフォンで確認するもよし。SOA Fundamental SOA Securityの対策を自分のペースで進められます。
SOA S90.18 試験概要:
| 認定ベンダー: | Arcitura Education |
|---|---|
| 試験名: | Fundamental SOA Security |
| 試験番号: | S90.18 |
| 合格点: | 70% |
| 関連資格: | SOACP - SOA Security Certification Path SOA Security Specialist |
| 試験時間: | 60 分 |
| 認定の有効期間: | 無期限 |
| 出題数: | 40 |
| 試験形式: | 多肢選択式 |
| 対応言語: | 英語 |
| 受験料: | USD $125 |
| サンプル問題: | DOWNLOAD DEMO |
| 受験方法: | Arcitura Education認定試験プラットフォームを通じて実施されるオンライン試験です。 |
| 前提条件: | 前提となる試験は特に定められていません。サービス指向アーキテクチャおよびWebサービスに関する基本的な知識を有していることが推奨されます。 |
| 公式シラバスのURL: | https://www.arcitura.com/soacp/exams/s90-18 |
SOA S90.18 試験シラバストピック:
| セクション | 目標 |
|---|---|
| アイデンティティとアクセス管理 | - 認証メカニズム
|
| SOAセキュリティモデル | - サービスセキュリティの原則
|
| セキュリティの基礎 | - セキュリティの脅威とリスク
|
| SOAセキュリティガバナンス | - セキュリティポリシー
|
| セキュリティ標準と技術 | - XMLおよびWebサービスセキュリティ
|
S90.18に挑戦する方へ – よくある質問まとめ
S90.18試験はSOA Fundamental SOA Securityの公式認定試験で、合格するとSOA Certificationの認定を取得できます。この認定はスペシャリストレベルに位置づけられています。関連する認定には、SOA Security Specialist、SOACP - SOA Security Certification Pathなどがあります。Tech4Examでは、この試験の出題傾向に沿った100問の練習問題をご用意しています。
S90.18試験の出題数は40、制限時間は60 分です。出題数に対して使える時間は限られるため、1問あたりにかけられるペースを意識しながら解き進める必要があります。難問に時間を使いすぎず、確実に答えられる問題から拾っていく時間配分が得点を安定させる鍵になります。Tech4Examのテストエンジンで制限時間つきの模擬試験を繰り返し、本番と同じリズムで解く感覚を身につけておくことをおすすめします。
S90.18試験の合格ラインは70%、受験料はUSD $125です。不合格になった場合、再受験には改めて全額の受験料が必要になるため、一度の受験で合格ラインをクリアできる準備が費用面でも重要です。Tech4Examの100問の練習問題で繰り返し自己採点を行い、安定して合格点を上回れることを確認してから本番に臨むと安心です。
受験条件は見直される場合があります。お申し込みの前に、SOAの公式ページで最新の情報をご確認ください。
はい、Tech4ExamではS90.18練習問題の無料サンプルをご用意しています。100問の問題集の一部を事前にご確認いただけるので、内容や品質に納得してからご購入いただけます。ご購入後は365日間の無料アップデートが付き、期間終了後も50%割引で更新を継続いただけるため、常に最新の出題内容に沿って学習できます。
Tech4Examには返金保証があります。ご購入後60日以内に対応する試験を受験して不合格だった場合、全額返金をお申し込みいただけます。ただし、購入後3日以内の受験による不合格、ダウンロード後に実際の試験を受験しなかった場合、無料資料や有効期限切れのご注文は対象外となり、受験者の氏名はお支払い者の氏名と一致している必要があります。お申し込みの際は、受験票のコピーと公式のScore ReportのPDFを試験後2日以内にご提出ください。提出後7日以内に手続きが完了します。返金の代わりに、同等の試験資料2点を無料でお受け取りいただき、お手持ちの製品の更新サービスをそのまま継続する選択も可能です。納品は即時ダウンロード方式で、お支払い完了後1分以内にメールでお届けします。2時間経っても届かない場合はカスタマーサポートまでご連絡ください。インストールするパソコンの台数に制限はありません。
S90.18試験の出題範囲は5の領域に分かれています。主な領域として、「セキュリティ標準と技術」、「アイデンティティとアクセス管理」、「セキュリティの基礎」などが挙げられます。各領域の詳しい内訳については、このページ上部に掲載している試験シラバスをご確認ください。
SOA Fundamental SOA Security 認定 S90.18 試験問題:
問題 #1
Service A requires self-signed digital certificates from all of its service consumers. The
service and its service consumers both belong to the same organization. You are
presented with a new requirement to only allow access to those service consumers with
certificates that have not expired. How can this requirement be addressed with minimal
impacts on the current security architecture?
A. The certificates need to be signed by an external certificate authority so that the
certificate authority's Certificate Revocation List (CRL) can be accessed in order to check
the expiry dates of the certificates.
B. None of the above
C. The current security mechanism already addresses this requirement because the
certificates contain a value that represents the validity period.
D. Using certificates in this scenario is not a valid option.
問題 #2
Service A supports WS-Security and Service B does not. How can they exchange secure
messages?
A. Service B can be designed to support XML Canonicalization instead. This enables
Service B to be compatible with any service that supports WS-Security.
B. WS-Security regulates identity stores and therefore does not prohibit Service A and
Service B from exchanging secure messages.
C. None of the above.
D. As long as both services share the same public key. it doesn't matter whether WS-
Security is supported.
問題 #3
The application of the __________ pattern can eliminate the need for__________.
However, the application of this pattern can also introduce increased dependency on
__________ that can result in a single point of failure for multiple services.
A. Direct Authentication, multiple identity stores, a central identity store
B. Data Origin Authentication, distributed tokens, a single token
C. None of the above
D. Brokered Authentication, distributed tokens, a central token
問題 #4
XML canonicalization is the process of standardizing the syntax of XML documents that are
to be digitally signed. This way, when the digital signature is verified, it reproduces the
same message digest for assessing message integrity.
A. False
B. True
問題 #5
A service that was previously using a shared identity store is now given its own dedicated
identity store instead. What are the likely impacts (positive or negative) that will result from
this change?
A. The potential to apply the Service Abstraction principle is increased.
B. The service's autonomy is increased.
C. The operational responsibility is increased due to the need to keep the dedicated identity
store in synch with a parent identity store.
D. The service will no longer be dependent on a certificate authority.
解説:
| 問題 #1 正解: C | 問題 #2 正解: C | 問題 #3 正解: C | 問題 #4 正解: B | 問題 #5 正解: B、C |

弊社は製品に自信を持っており、面倒な製品を提供していません。


-Matsushita

