1Z0-1104-23 Oracle Cloud Infrastructure 2023 Security Professional Exam Guide
The 1Z0-1104-23 exam validates practical OCI security knowledge through multiple-choice questions and a hands-on performance component. It serves security professionals, solution architects, and others responsible for protecting OCI environments, especially candidates with substantial security design experience and direct OCI workload experience. This guide helps you decide whether your current skills match the exam, which topics to study first, how to use Oracle’s learning path and labs, and what to confirm before buying and scheduling an attempt.
What does 1Z0-1104-23 validate?
1Z0-1104-23 is Oracle’s Oracle Cloud Infrastructure 2023 Security Professional exam. The credential is aimed at people who use OCI security services to build and protect cloud environments, and the assessment combines knowledge questions with practical work in a provided OCI environment. Prepare for application, data, identity, network, and operational security decisions rather than isolated product definitions.
The assessment is both conceptual and practical
Oracle describes the 2023 Security Professional exam as a hands-on performance-based exam comprising hands-on challenges and multiple-choice questions. Oracle’s announcement further specifies a hands-on performance section with two challenges completed in a provided OCI environment. That format makes configuration reasoning important: knowing what a service does is not enough if you cannot apply the control to a cloud scenario.
What the supplied evidence does not establish
The supplied official material does not provide a verified question count, exam duration, passing score, delivery language, blueprint percentages, or a complete task-by-task exam outline for 1Z0-1104-23. Do not use unofficial figures as planning assumptions. Check the 1Z0-1104-23 page in Oracle MyLearn and Oracle’s certification pages for the current appointment and exam information before scheduling.
Who is the intended candidate?
The strongest fit is a security practitioner or solution architect who already works with OCI security controls and can connect them to workload protection. Oracle’s catalog identifies a target candidate with 2+ years of experience designing and implementing security solutions and 6 months or more of hands-on experience securing workloads on OCI. These are stated target-profile expectations, not a substitute for checking the current exam requirements.
Candidates likely to benefit most
Prioritize this exam if your work includes OCI identity and access management, network protection, data or database security, application security, monitoring, logging, alerting, or compliance-oriented controls. It can also suit solution architects who must turn security requirements into OCI designs. The catalog lists OCI security services, IAM, data and database protection, network security, secure applications, security operations, monitoring, logging, alerting, and compliance frameworks among the relevant skills.
When to strengthen your foundation first
A candidate who has only read OCI documentation but has not configured security controls should build practical experience before booking an attempt. Likewise, a general security background does not automatically cover OCI-specific policy behavior, compartment design, service integration, or operational visibility. Use a lab to expose gaps, then return to the relevant learning material instead of treating broad security familiarity as exam readiness.
Which skills should shape the study plan?
Study by security decision, not by a random list of OCI services. The official catalog groups the credential around identity, data and database workloads, networks, applications, operations, monitoring, logging, alerting, and compliance. Since no verified domain weighting is supplied here, give each area enough attention to demonstrate a working design and explain why a particular control belongs in that design.
Identity and access management
Review how access decisions are structured across users, groups, policies, compartments, and resources. Your notes should explain who needs access, where that access applies, and how to avoid granting more authority than the task requires. Practice translating a plain-language requirement into a policy and then checking whether the resulting scope matches the intended administrative boundary.
Secure compartment and resource design
The course description includes secure compartment design and resource configuration. Practice designing boundaries before creating resources: separate ownership concerns, identify administrative responsibilities, and decide where policies should be attached. A useful exercise is to review a proposed compartment layout and identify accidental privilege inheritance, unclear ownership, or controls that are too broad for the workload.
Network, application, data, and database protection
Treat these topics as connected layers. Begin with the workload’s exposure and trust boundaries, then determine how network controls, application protections, and data or database safeguards work together. Avoid memorizing service names without understanding the threat being addressed. For each design, record the protected asset, the control, the expected effect, and the evidence you would inspect afterward.
Security operations and compliance
Monitoring, logging, alerting, and compliance require an operational viewpoint. Study how a team would detect suspicious activity, preserve useful evidence, and respond to a signal. Link each alert or log source to a security question: what happened, which resource was affected, who initiated it, and what follow-up action is justified.
How should you use Oracle’s learning path?
Oracle’s official OCI 2023 Security Professional learning-path listing reports 80 lessons, 45 demos, and 20 hands-on labs, with a stated training duration of 27 hours and 18 minutes. Use that material as a structured baseline, but do not assume watching every lesson proves practical readiness. Pair each lesson cluster with a configuration task and a short explanation of the security decision involved.
A productive sequence
Start with the lessons that establish OCI security services and identity concepts. Continue into compartment and resource configuration, then work through network, application, data, and database protection. Finish with security operations, monitoring, logging, alerting, and compliance-oriented review. This order moves from authorization and architecture toward workload controls and operational verification.
Turn demos into retrieval practice
After a demo, close the material and recreate the objective from your own notes. Write down the starting condition, the control you configured, and how you verified it. If you cannot explain why the setting was selected, replay the relevant section and repeat the task. The point is to build transferable reasoning, not to reproduce a screen sequence mechanically.
Use the labs diagnostically
The official learning path includes hands-on labs, while the Learn Oracle page provides instructions for requesting and accessing a training lab environment. Schedule lab time rather than assuming access is immediate, and keep credentials out of public discussion areas. If the environment is unavailable or a technical issue occurs, use the course support process rather than improvising with unverified workarounds.
What is a practical study roadmap?
A useful roadmap has four stages: establish the exam scope, build service understanding, perform integrated configurations, and rehearse explanation and verification. Set a target date only after you have tested your weakest areas in a lab. Because the supplied evidence does not state the exam’s duration or scoring threshold, use demonstrated task competence and consistent reasoning as readiness signals instead of a guessed score target.
Stage one: map experience to the skills
Create a table with the catalog’s skill areas: OCI security services, IAM, data and database workload protection, network security, secure OCI applications, security operations, monitoring, logging, alerting, and compliance frameworks. Mark each as strong, usable, or unfamiliar. Add a short example from your own OCI work where possible. The unfamiliar and merely theoretical areas become the first study targets.
Stage two: build a security-service map
For each target area, record the security problem, the OCI control or service involved, the configuration boundary, and the verification method. Include common trade-offs such as broad versus narrowly scoped access, prevention versus detection, and central administration versus workload ownership. This map becomes more useful than a glossary because it captures when and why a control is applied.
Stage three: complete integrated lab scenarios
Do not practice each control in isolation forever. Build a small workload-security scenario that requires identity decisions, compartment placement, network restrictions, data protection, and operational monitoring. Change one requirement at a time and observe which configuration must change. Finish by checking logs, access behavior, and resource state so that every action has an observable result.
Stage four: rehearse under constraints
Use a checklist to complete a security task without copying instructions line by line. Before changing anything, identify the requirement and affected resources. During the task, note assumptions and verify each major control. At the end, explain the design aloud or in writing. This rehearsal exposes gaps in sequencing, policy scope, and troubleshooting before the official assessment.
How can you prepare for the hands-on challenges?
The hands-on section rewards controlled execution: understand the requirement, identify the relevant OCI objects, make the smallest appropriate change, and verify the outcome. Practice recovering from a wrong setting without resetting everything. Since Oracle confirms two hands-on challenges for this exam, prepare for practical work as a core part of the assessment rather than an optional supplement to multiple-choice study.
A repeatable task method
First, restate the required security outcome in concrete terms. Next, inspect the existing tenancy, compartment, identity, network, or workload context. Then select the narrowest control that satisfies the requirement and apply it in the correct scope. Finally, test the expected behavior and inspect available evidence such as configuration state, logs, or alerts. Record any dependency you discovered.
Common hands-on errors
Frequent preparation mistakes include changing the wrong compartment, attaching a policy at an unnecessarily broad level, overlooking an existing network dependency, and stopping after a configuration change without testing it. Another error is spending too long on an elegant redesign when the task calls for a focused correction. Practice reading the requirement literally and preserving unrelated working configuration.
How to use a failed attempt productively
If a lab task fails, classify the cause before trying again: misunderstood requirement, wrong scope, missing dependency, syntax or selection error, or incomplete verification. Keep a troubleshooting log with the symptom, hypothesis, correction, and result. That record becomes a targeted revision list and prevents repeated trial-and-error without learning the underlying OCI behavior.
How should you study multiple-choice questions?
Use multiple-choice practice to test design judgment, not to memorize answer patterns. For every question, identify the protected asset, the stated constraint, and the desired security outcome before considering the options. Eliminate answers that solve a different problem, apply excessive privilege, ignore operational evidence, or introduce an unmentioned dependency. Do not rely on leaked questions or exam dumps.
A useful review routine
After selecting an answer, explain why it fits and why the closest alternative does not. Tag the explanation by skill area, such as IAM, network security, data protection, or monitoring. When you miss a question, return to the relevant Oracle material and create a small configuration or architecture exercise. This converts a recall error into a practical correction.
Avoid false certainty
Do not infer that a familiar service is always the correct answer. A security design depends on scope, workload type, administrative ownership, and the evidence needed for ongoing operations. Watch for options that sound secure but do not address the stated threat. The best preparation question is not “Which term have I seen?” but “What outcome must this control produce?”
What scheduling and purchase details should you confirm?
Oracle’s certification process states that a candidate buys an exam attempt, chooses a date, and has six months to take the exam. The current purchase flow and availability should be checked in Oracle MyLearn. Confirm the exam identifier, delivery instructions, appointment conditions, and local purchase currency before payment; the supplied evidence does not establish a fixed price for 1Z0-1104-23.
Price and currency
Oracle directs candidates to check exam prices at pearsonvue.com/oracle for the currency accepted by the vendor for the selected exam. Oracle also explains that currency conversions are reviewed and updated annually and that daily exchange-rate movement can prevent an exact match between a USD amount and local currency. Verify the amount at checkout rather than relying on an old page or third-party listing.
Cancellation and rescheduling
Oracle’s guidelines state that an exam must be cancelled or rescheduled at least 24 hours before the appointment time. Missing that window can put the exam attempt at risk, so make the appointment only when your preparation and availability are realistic. Save the confirmation details and review the vendor’s current instructions immediately after scheduling.
Retakes and passed exams
Oracle states that a failed exam retake may be scheduled for the earliest appointment date from the failed exam appointment date, while a passed exam may not be retaken. Treat a retake as a diagnostic opportunity only after reviewing the areas that caused difficulty. Do not create another candidate identity to bypass policy; Oracle says results can be invalidated and further action may follow.
Status and version checking
The supplied official page for the later 1Z0-1104-25 exam does not establish a retirement date for 1Z0-1104-23. Therefore, do not infer the status of the 2023 exam from the later exam’s page. Check Oracle MyLearn and the current Oracle certification catalog for whether 1Z0-1104-23 is available, what version is offered, and whether the selected appointment matches your intended exam.
What should you arrange for practical training?
Plan lab access as a separate scheduling task from exam scheduling. The Learn Oracle course page describes system testing, lab requests, access instructions, support tickets, and environment availability that depends on the training event. Test your connection before the planned session, keep the lab credentials private, and leave enough time to repeat tasks rather than treating a single successful walkthrough as mastery.
Technical preparation for the training lab
The course page lists an unshared internet connection, headphones with a microphone, supported browsers, and a system-test step through Oracle’s lab connection site. Review the current page before the session because support and browser information can change. If the lab does not work, open the course support ticket described by Oracle instead of posting credentials or sensitive details in a public forum.
Separate course-lab facts from exam facts
A training lab environment is not evidence of the official exam’s exact interface, timing, or task content. Use it to practice OCI security operations and verification, not to predict live questions. Similarly, the learning path’s published training duration describes the course, not the duration of the certification exam. Keeping these distinctions clear prevents flawed scheduling and unrealistic expectations.
Which mistakes most often weaken preparation?
The biggest preparation problem is confusing recognition with execution. Candidates may recognize IAM or network terminology yet struggle to select the correct scope, configure a dependency, or prove that a control works. Other avoidable errors include studying only multiple-choice material, ignoring operational visibility, using outdated exam information, and booking before confirming that the 2023 exam is still the intended available version.
Mistake: studying services as isolated definitions
Correct this by linking every service to an asset, threat, control boundary, and verification step. A study note that says only what a service is will not help much with a scenario. Rewrite it as a decision rule: when the requirement has a particular scope and risk, which control is appropriate, where is it configured, and how is the result checked?
Mistake: neglecting policy scope
Correct this by drawing the relationship between identity, group, policy, compartment, and resource. For each policy exercise, state who can perform which action on which resource set and under what boundary. Then test whether the policy is narrower or broader than required. This habit improves both hands-on accuracy and scenario-question analysis.
Mistake: treating monitoring as an afterthought
Correct this by adding a detection and evidence step to every lab scenario. Ask what should be logged, what would generate an alert, and how an operator would investigate the event. Security is not complete when a configuration is saved; it also requires a way to identify and assess unwanted activity.
Mistake: relying on unofficial certainty
Correct this by separating verified Oracle facts from planning assumptions. The supplied evidence does not verify a question count, exam duration, blueprint percentages, passing score, price, or language for this exam. Use Oracle’s current pages for those details, and use your lab results and topic checklist to make the readiness decision.
How do you decide that you are ready to schedule?
Schedule when you can explain and perform the core security decisions without depending on step-by-step copying. You should be able to move from a requirement to a scoped OCI design, implement the relevant controls in a lab, verify the result, and diagnose a predictable failure. If one skill area remains entirely theoretical, delay booking or reserve additional lab time before committing the attempt.
A readiness review
Review each official skill area and attach evidence: a completed lab task, a written design explanation, or a corrected troubleshooting record. Revisit any area supported only by vocabulary notes. Perform an integrated scenario at the end, then explain the security boundaries and operational evidence. Readiness is stronger when your result is repeatable on a fresh task, not just familiar on a rehearsed one.
The final administrative checklist
Confirm that Oracle MyLearn identifies the intended exam as 1Z0-1104-23, verify its current availability and appointment instructions, check the price and currency at the authorized purchase point, and review cancellation and rescheduling rules. Confirm your identification and technical requirements from the current provider instructions. Keep the appointment confirmation accessible and avoid last-minute changes where possible.
What should you do next?
Begin with an experience and skills audit, then select the Oracle learning-path sections that address your weakest areas. Schedule lab practice before purchasing if your OCI configuration experience is limited. After an integrated practice run, recheck the official MyLearn and certification pages for current exam availability and appointment details. Use this sequence to make a deliberate booking decision rather than treating an exam dump or a guessed blueprint as preparation.
A focused next-action list
1. Open the official 1Z0-1104-23 MyLearn listing and confirm the current exam information. 2. Map your experience against the catalog’s listed security skills. 3. Study identity and boundary design before moving into workload and operations topics. 4. Complete hands-on practice that includes verification. 5. Check purchase, currency, cancellation, rescheduling, and retake rules before committing an attempt.
Conclusion
1Z0-1104-23 should be approached as an applied OCI security assessment, not a terminology quiz. Build from identity and secure boundaries into workload protection and security operations, then prove your understanding through lab configurations and verification. Before scheduling, confirm the current 2023 exam listing and administrative details with Oracle, because the supplied evidence does not verify several time-sensitive exam properties. Use official material for requirements and practical exercises for readiness.
Related exams
- 1z0-1067-24 exam — Oracle Cloud Infrastructure 2024 Cloud Operations Professional
- 1z0-1067-25 exam — Oracle Cloud Infrastructure 2026 Cloud Ops Professional
- 1z0-1084-25 exam — Oracle Cloud Infrastructure 2026 Developer Professional
- 1z0-1085-24 exam — Oracle Cloud Infrastructure 2024 Foundations Associate
- 1z0-1085-25 exam — Oracle Cloud Infrastructure 2026 Foundations Associate
- 1z0-1104-25 exam — Oracle Cloud Infrastructure 2026 Security Professional