New Year Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70special

ServiceNow CIS-RCI Certified Implementation Specialist - Risk and Compliance Exam Practice Test

Page: 1 / 12
Total 121 questions

Certified Implementation Specialist - Risk and Compliance Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$37.5  $124.99

PDF Study Guide

  • Product Type: PDF Study Guide
$33  $109.99
Question 1

The Citation table is a child table of which parent?

Options:

A.

Content

B.

Authority Document

C.

Item

D.

Document

Question 2

What are the Risk Scoring methods available in ServiceNow? (Choose two.)

Options:

A.

Quantitative

B.

Qualitative

C.

Inherent

D.

Residual

E.

Calculated

Question 3

What types of tasks are specific to the Audit module? (Choose four.)

Options:

A.

Control Attestation

B.

Interview

C.

Walkthrough

D.

Control Test

E.

Activity

F.

Remediation

Question 4

The content table (sn_grcs_content) is a parent table of:

Options:

A.

sn_grc_profile

B.

sn_risk_framework

C.

sn_risk_definition

D.

sn_risk_risk

Question 5

Which table stores the links from the Entity Type to Risk Statement?

Options:

A.

[sn_risk_m2m_statement_profile_type]

B.

[sn_risk_m2m_framework_profile_type]

C.

[sn_risk_m2m_risk_definition_profile_type]

D.

[sn_risk_m2m_policy_profile_type]

Question 6

What would you leverage in order to provide users with an alternate user experience to view policies, create

policy exceptions, and search for controls?

Options:

A.

Help Desk Portal

B.

Catalog Portal

C.

Access Portal

D.

Service Portal

Question 7

Which of the following relationship sets are considered a many-to-many relationship? (Choose three.)

Options:

A.

Entity Type and Entity Class

B.

Indicator Template and Entity Type

C.

Control and Risk

D.

Control Objective and Entity Type

E.

Entity Type and Entity

Question 8

Controls are generated from a Control Objective when what is applied to it?

Options:

A.

Policy

B.

Citation

C.

Indicator template

D.

Entity Type

Question 9

What table, along with the Policy table, is linked to the Control Objective table by a many-to-many

relationship?

Options:

A.

Entity Class

B.

Citation

C.

Authority Documents

D.

Risk Framework

Question 10

What are the terms for level of risk before and after any actions are taken? (Choose two.)

Options:

A.

Operational risk

B.

Digital risk

C.

Inherent risk

D.

Calculated risk

E.

Residual risk

F.

Solutioned risk

Question 11

Which scheduled jobs in the GRC: Profiles scope help manage the population of Entity records? (Choose two.)

Options:

A.

GRC indicator nightly run

B.

GRC Entity and Risk Statement Data Collection

C.

GRC Profile Generation

D.

GRC Refresh Risk Scores

Question 12

In which state is the Policy once all approvals are received?

Options:

A.

Review

B.

Published

C.

Draft

D.

Retired

E.

Awaiting Approval

Question 13

Which one of the following is not a trigger for issue creation?

Options:

A.

Manual issue created by any manager or admin role as well as by audit user

B.

Indicator failure

C.

Risk assessment returns the inherent and residual risk impact as ‘Very High’

D.

Attestation returns the result as ‘Not Implemented’

E.

Control effectiveness is ‘Ineffective’ and the state of control test is ‘Closed Complete’

Question 14

Who should be directly involved in GRC implementations? (Choose four.)

Options:

A.

Board of directors

B.

Chief Executive

C.

ServiceNow platform experts

D.

Business Analyst

E.

Risk and compliance experts

F.

CMDB process owner

Question 15

What happens when you assign an Entity Type to a Control Objective?

Options:

A.

An assessment is automatically generated to test each Entity listed in the Entity Type

B.

A policy is created automatically for every Entity listed in the Entity Type

C.

A control is automatically generated for every Entity listed in the Entity Type

D.

The Entity Type presents a compliance score and controls tied to it

Question 16

What are some of the drivers for customers to get the GRC suite of applications? (Choose four.)

Options:

A.

They would like efficiency

B.

They would like integrated reporting

C.

They would like transparency

D.

They would like automated customer service

E.

They would like custom websites

F.

They would like workflow driven processes

Question 17

Which of the following extends from Content Table? (Choose two.)

Options:

A.

Citation

B.

Policy

C.

Control Objective

D.

Authority Document

Question 18

What GRC module would you access in order to update Entity Types?

Options:

A.

Risk > Entities

B.

Scoping > Profiles

C.

Scoping > Entity Types

D.

CMDB

Page: 1 / 12
Total 121 questions