SAP Fiori Launchpad & Role-Based Access
How the Fiori Launchpad aggregates apps into catalogs and groups, and how PFCG roles control which tiles a user sees.
Fiori Launchpad configuration is a practical, hands-on topic interviewers ask both technical consultants and Basis-adjacent security folks about, since getting it wrong is one of the most common go-live day issues - users logging in and either seeing nothing or seeing far more than their role should allow.
A catalog is like a restaurant's full kitchen menu of everything the chefs can prepare (what's technically available and authorized); a group is the specific printed menu handed to one type of customer (the actual tiles a user sees), and both the kitchen's willingness to cook a dish and the printed menu listing it have to align before a customer can actually order it.