- Home
- SAP Certification
- C-S4CPB-2602 Exam
- SAP.C-S4CPB-2602.dumpsfiles Dumps
Free SAP C-S4CPB-2602 Exam Dumps Questions & Answers
| Exam Code/Number: | C-S4CPB-2602Join the discussion |
| Exam Name: | SAP Certified - Implementation Consultant - SAP S/4HANA Cloud Public Edition (C_S4CPB_2602) |
| Certification: | SAP |
| Question Number: | 20 |
| Publish Date: | Jul 20, 2026 |
|
Rating
100%
|
|
Total 20 questions
SIMULATION
Create a Custom Business Role with Restrictions
Business Scenario:
You are building a custom business role with restrictions to ensure the end users assigned the role have only the minimum level of access necessary to complete their core job tasks. The end users are project managers based in the United States. They should only be able to create projects, edit projects, and access projects that are occurring in the United States. They should not be able to staff any resources outside of the United States. Write, Read, and Value Help access should be restricted to only the United States for all relevant fields.
Prerequisites:
Note: In the task below, always replace ###### with the last 6 digits of your group number.
Note: Make sure to use the EXACT names/values/spaces as they are listed in the task. Even forgetting a space or a number will cause the validation of the task to fail and be marked as incorrect.
Task:
Use the template for the business role Project Manager - Professional Services (SAP_BR_PROJECT_MANAGER_PROF) to create a new business role with the following information:
Explanation:
Objective
The purpose of this task is to create a custom business role for project managers in the United States by using the standard SAP template role Project Manager - Professional Services and then restricting the role so users only have the minimum access needed for their job.
The template role used is:
Template Business Role ID: SAP_BR_PROJECT_MANAGER_PROF
Template Business Role Description: Project Manager - Professional Services The new custom role must be created with exact values defined in the task.
Business Scenario Explanation
In this simulation, you are building a restricted custom role for project managers who work only in the United States.
The goal is to ensure that these end users:
can create and edit projects,
can access only projects occurring in the United States,
cannot work with projects or staffing outside the US,
have only the minimum level of authorization needed.
This is done in two major parts:
Create a new custom business role from the standard SAP template
Restrict the role values so only US-related data is allowed
Important Notes
Always replace ###### with the last 6 digits of your group number.
Every value must be entered exactly as shown.
Even one missing space or incorrect character can cause the simulation validation to fail.
You must also create and assign a launchpad space as part of the custom role creation.
Required Values for Role Creation
Use the following values exactly as shown in the task image.
Parameter
Value
New Business Role ID
BR_PROJECT_MANAGER_PROF_US_######
New Business Role Description
Project Manager - Professional Services - US - ######
Option for Launchpad Spaces
Create and Assign Spaces Based on Space Templates
New Space ID
ZBR_PROJECT_MANAGER_PROF_US_######
Activate IAM Apps
Yes (check the box)
Example
If your suffix is 000457, the values become:
BR_PROJECT_MANAGER_PROF_US_000457
Project Manager - Professional Services - US - 000457
ZBR_PROJECT_MANAGER_PROF_US_000457
Detailed Step-by-Step Procedure
Part 1: Open the standard template role
Step 1: Open the app "Maintain Business Roles"
From the SAP S/4HANA Cloud launchpad:
Log in to SAP S/4HANA Cloud.
Use the app search.
Search for:
Maintain Business Roles
Open the app.
Explanation:
This app is used to maintain standard and custom business roles.
Because this task requires creating a custom role from an existing template, this is the correct starting app.

Step 2: Search for the template role
Inside Maintain Business Roles:
In the search/filter area, search for:
SAP_BR_PROJECT_MANAGER_PROF
or
Project Manager - Professional Services
Open the standard SAP template role.
Explanation:
You must start from the standard template role because the task explicitly says to use the template for:
Project Manager - Professional Services
SAP_BR_PROJECT_MANAGER_PROF

Part 2: Create the custom role from the template
Step 3: Click "Create Derived Business Role"
On the template role page:
Click:
Create Derived Business Role
Explanation:
This function creates a customer-specific copy based on the standard SAP business role template.
It preserves the delivered role content but allows you to define your own role ID, description, restrictions, and launchpad space.
Step 4: Enter the custom role information
In the creation popup, enter the values exactly as follows:
Template = SAP_BR_PROJECT_MANAGER_PROF
New Business Role ID = BR_PROJECT_MANAGER_PROF_US_######
New Business Role Description = Project Manager - Professional Services - US - ###### Option for Launchpad Spaces = Create and Assign Spaces Based on Space Templates New Space ID = ZBR_PROJECT_MANAGER_PROF_US_###### Activate IAM Apps = checked Explanation:
These values define the new custom project manager role that will later be restricted to US-only access.
The space option is important because the task expects the role to include its own launchpad space.

Step 5: Confirm creation
Click OK
Explanation:
SAP now creates the custom role derived from the template and assigns the new launchpad space at the same time.
Part 3: Verify the newly created custom role
Step 6: Review the new custom role
After creation, SAP opens the new custom role.
Verify:
Business Role ID = BR_PROJECT_MANAGER_PROF_US_######
Business Role Description = Project Manager - Professional Services - US - ###### Business Role Template ID = SAP_BR_PROJECT_MANAGER_PROF Explanation:
This confirms the derived role was created correctly from the right SAP template.
Part 4: Maintain role restrictions
Step 7: Open "Maintain Restrictions"
On the custom role page:
Click:
Maintain Restrictions
Explanation:
This is the most important part of the task.
You are not only creating a role - you are also limiting the role so it only allows US-related values.
Step 8: Understand the rule for restriction maintenance
The PDF/task logic is:
Fields explicitly listed in the restriction table → keep them Restricted and enter the required values All other fields not listed in the task table → set them to Not Maintained Explanation:
This is essential.
If extra fields remain restricted or blank, the role may not validate correctly.
The safest approach is:
only maintain the required fields,
mark all unrelated fields as Not Maintained.

Part 5: Enter the required US restrictions
From your exercise run, the maintained values included restrictions such as:
Keep these kinds of fields restricted with US/1710 values where required Examples from your run:
Bank Country/Region Key
Read, Value Help = US
Value Help = US
Company Code
use 1710 only where the task table explicitly requires it
Purchasing Organization
use 1710 where required
Valuation Area
use 1710 where required
Explanation:
These are the exact business restrictions that make the role usable only for the intended geography and business scope.
Step 9: Set unrelated restriction fields to "Not Maintained"
For every field not included in the task's restriction list, choose:
Not Maintained
Examples from your screenshots included fields like:
Accounting Principle
Authorization Group for Business Partners
Billing Type
These should be Not Maintained unless they are explicitly listed in the task's required restriction table.
Explanation:
This removes unnecessary access and matches the task wording that all other fields should be set to Not Maintained.

Step 10: Save the restrictions
After all required values are entered and unrelated fields are marked Not Maintained:
Click Save
Explanation:
This saves the restriction profile of the role.
If you do not save here, the role will remain incomplete or in draft.
Part 6: Verify launchpad space and page creation
Step 11: Go to Launchpad Spaces
In the custom role:
Open the tab:
Launchpad Spaces
Verify that the assigned space exists:
ZBR_PROJECT_MANAGER_PROF_US_######
Explanation:
Because you selected Create and Assign Spaces Based on Space Templates, SAP should have created and assigned the launchpad space automatically.
Step 12: Verify the created space
Open the assigned space and confirm:
the custom space exists,
it is customer-managed,
the pages are assigned correctly.
Explanation:
This proves that the new business role has its own launchpad structure as required by the task.
Expected Result
After this task is completed successfully:
a new custom role exists based on SAP_BR_PROJECT_MANAGER_PROF,
the role uses the exact required ID and description,
the role has a custom launchpad space,
IAM apps are activated,
restrictions are maintained for US-only access,
all irrelevant fields are set to Not Maintained,
the role is saved successfully.
SIMULATION
Set up an Integration Scenario
Business Scenario
You are responsible for setting up the Bank Integration with File Interface (1EG). During an actual implementation, you would first download the Set-up Instructions for the business process from SAP Signavio Process Navigator. In this practical exam, all the information will be provided to you, so you do not need to download the Set-up Instructions.
Prerequisites
Note:
In the task below, always replace ###### with the last 6 digits of your group number.
Note:
Make sure to use the EXACT names/values/spaces as they are listed in the task. Even forgetting a space or a number will cause the validation of the task to fail and be marked as incorrect.
Your Task
Create a Communication System with the information listed below and save.
Explanation:
Objective
The purpose of this task is to create a Communication System for the integration scenario Bank Integration with File Interface (1EG).
This communication system will later be used in the communication arrangement and will reference the communication user created in the previous task.
Business Scenario Explanation
In this scenario, you are setting up:
Bank Integration with File Interface (1EG)
In SAP S/4HANA Cloud, the technical setup typically requires:
a Communication User
a Communication System
a Communication Arrangement
In Task 13, you created the communication user.
In Task 14, you now create the communication system and link that previously created communication user for inbound communication.
The communication system represents the external or technical integration partner definition used in the scenario.
Important Notes
Always replace ###### with the last 6 digits of your group number.
Use the exact values shown in the task.
Do not change capitalization, underscores, or spacing.
The communication user assigned in this task must be the one created in the previous step:
1EG_COMM_USER_######
Required Values
Use the following values exactly as shown in the task image.

Example
If your suffix is 000013, then the values become:
System ID = 1EG_SYSTEM_000013
System Name = Bank Integration with File Interface
Host Name = DUMMY
Inbound Communication User = 1EG_COMM_USER_000013
Step 1: Open the app "Communication Systems"
From the SAP S/4HANA Cloud launchpad:
Log in to SAP S/4HANA Cloud.
Use the search bar or app finder.
Search for:
Communication Systems
Open the app.
Explanation:
This app is used to create and maintain technical communication systems for integration scenarios.
Because the task explicitly asks to create a Communication System, this is the correct app.
Step 2: Start creating a new Communication System
Inside the Communication Systems app:
Click:
New
Explanation:
This starts the creation of a new communication system record.
Step 3: Enter the System ID
In the communication system creation screen, enter:
System ID = 1EG_SYSTEM_######
Example
If your suffix is 000013, enter:
1EG_SYSTEM_000013
Explanation:
This is the technical ID of the communication system.
It must exactly match the task requirement.
Step 4: Enter the System Name
In the System Name field, enter exactly:
Bank Integration with File Interface
Explanation:
This is the descriptive name of the communication system and must be entered exactly as provided.
Step 5: Enter the Host Name
In the Host Name field, enter exactly:
DUMMY
Explanation:
For this simulation, the host is not a real productive endpoint.
The task explicitly requires the placeholder value DUMMY.
Step 6: Maintain the inbound communication user
Locate the section for:
Users for Inbound Communication
Then:
Click Add or select the entry field/value help
Choose the communication user created in the previous task:
1EG_COMM_USER_######
Example
If your suffix is 000013, select:
1EG_COMM_USER_000013
Explanation:
This is a critical link between the communication user and the communication system.
Without assigning the previously created communication user, the communication system setup is incomplete.
Step 7: Verify the inbound user assignment
After adding the inbound communication user, confirm that the selected user is:
1EG_COMM_USER_######
Explanation:
This confirms that the system will use the correct technical user for inbound communication in the later communication arrangement.
Step 8: Review all entered values
Before saving, check the following:
System ID = 1EG_SYSTEM_######
System Name = Bank Integration with File Interface
Host Name = DUMMY
Users for Inbound Communication = 1EG_COMM_USER_######
Explanation:
This review helps avoid validation issues caused by incorrect naming, missing underscores, or selecting the wrong communication user.
Step 9: Save the Communication System
Click:
Save
Explanation:
This finalizes the creation of the communication system.
Without saving, the communication system will not exist for the next task.
Step 10: Verify the saved Communication System
After saving, confirm that the communication system exists and displays the correct values:
1EG_SYSTEM_######
Bank Integration with File Interface
Host = DUMMY
inbound user = 1EG_COMM_USER_######
Explanation:
This confirms the system is successfully created and ready for the communication arrangement setup in the next step.
Expected Result
After this task is completed successfully:
the communication system exists,
the system ID matches the required naming pattern,
the system name is correct,
the host name is DUMMY,
the previously created communication user is assigned for inbound communication, the system is saved successfully.
SIMULATION
Set up an Integration Scenario
Business Scenario
You are responsible for setting up the Bank Integration with File Interface (1EG). During an actual implementation, you would first download the Set-up Instructions for the business process from SAP Signavio Process Navigator. In this practical exam, all the information will be provided to you, so you do not need to download the Set-up Instructions.
Prerequisites
Note:
In the task below, always replace ###### with the last 6 digits of your group number.
Note:
Make sure to use the EXACT names/values/spaces as they are listed in the task. Even forgetting a space or a number will cause the validation of the task to fail and be marked as incorrect.
Your Task
Create a Communication User with the information listed below and save.
Explanation:
Objective
The purpose of this task is to create a new Communication User for the integration scenario Bank Integration with File Interface (1EG).
This communication user will later be used in the integration setup, especially when defining the communication system and communication arrangement.
Business Scenario Explanation
In this scenario, you are setting up the integration for:
Bank Integration with File Interface (1EG)
In SAP S/4HANA Cloud, technical communication between systems is usually handled through:
a Communication User
a Communication System
a Communication Arrangement
This task is the first step in that chain.
The communication user acts as the technical user that the system uses for integration-related authentication.
Important Notes
Always replace ###### with the last 6 digits of your group number.
Use the exact values shown in the task.
Do not change spaces, underscores, or capitalization.
The password should not be typed manually if the task says:
Have the system propose a password
Required Values
Use the following values exactly as shown in the task image.

Example
If your suffix is 000013, then the values become:
User Name = 1EG_COMM_USER_000013
Description = 1EG Communication User
Step 1: Open the app "Communication Users"
From the SAP S/4HANA Cloud launchpad:
Log in to SAP S/4HANA Cloud.
Use the search bar or app finder.
Search for:
Communication Users
or
Maintain Communication Users
Open the app.
Explanation:
This app is used to create and maintain technical communication users for integration scenarios.
This is the correct starting point because the task explicitly says to create a Communication User.
Step 2: Start creating a new communication user
Inside the Communication Users app:
Click:
New
Explanation:
This starts the creation of a new communication user record.
Step 3: Enter the User Name
In the new communication user screen, enter:
User Name = 1EG_COMM_USER_######
Example
If your suffix is 000013, enter:
1EG_COMM_USER_000013
Explanation:
This is the technical identifier for the communication user.
It must match the task exactly.
Step 4: Enter the Description
In the Description field, enter exactly:
1EG Communication User
Explanation:
This is the functional description of the technical integration user.
It should be entered exactly as written in the task to avoid validation issues.
Step 5: Let the system propose the password
In the password section:
Do not manually type a password.
Click:
Propose Password
Explanation:
The task explicitly says:
Password = Have the system propose a password
So the correct action is to use the SAP-generated password instead of entering your own value manually.
Step 6: Review the generated password
After clicking Propose Password:
The system generates a password automatically.
If the system displays the password, note it down if needed for later integration steps.
Explanation:
In some cases, the proposed password may later be needed during communication setup or documentation.
Even if not needed later in the simulation, this confirms the correct procedure was followed.
Step 7: Save the Communication User
Click:
Save
Explanation:
This finalizes the creation of the communication user.
Without saving, the technical user will not exist and the later integration steps will fail.
Step 8: Verify the Communication User
After saving, confirm that the communication user exists in the list and displays the correct values:
User Name = 1EG_COMM_USER_######
Description = 1EG Communication User
Explanation:
This confirms the task is complete and the user is ready to be used in the next integration setup tasks.
Expected Result
After this task is completed successfully:
the communication user exists,
the user name matches the required naming convention,
the description is correct,
the password was proposed by the system,
the user is saved successfully.
