Pass the ServiceNow Risk and Compliance CIS-RCI Questions and answers with CertsForce

Viewing page 1 out of 5 pages
Viewing questions 1-10 out of questions
Questions # 1:

Why would you create Entity classes?

Options:

A.

To show relationships between tables or objects you are tracking that doesn’t otherwise exist anywhere in

ServiceNow


B.

To be assigned to risk statements, which generate risks for every Entity listed in the Entity Class


C.

To be assigned to Control Objectives, which generate Controls for every Entity listed in the Entity class


D.

To show relationships between Entities and Policies and map them directory to Citations


Expert Solution
Questions # 2:

Which indicator type uses platform automation to collect records for continuous monitoring?

Options:

A.

Manual


B.

Scripted


C.

Automate


D.

Basic


Expert Solution
Questions # 3:

Control Failure Factor represents the impact of Control Failures on what score?

Options:

A.

Inherent


B.

Residual


C.

Total


D.

Calculated


Expert Solution
Questions # 4:

Which role(s) has the capability to create Policies? Choose two.)

Options:

A.

Compliance Manager


B.

Compliance admin


C.

Compliance User


D.

Risk Manager


Expert Solution
Questions # 5:

UCF has a collection of what? Select all UCF terms.

(Choose three.)

Options:

A.

Control Indicators


B.

Authority Documents


C.

Policies


D.

Citations


E.

Controls


Expert Solution
Questions # 6:

Critical parts of a successful GRC implementation are understanding the customers current: (Choose three.)

Options:

A.

Regulatory requirements


B.

Risk and Compliance personas


C.

GRC processes


D.

Data breaches


E.

Audit failures


Expert Solution
Questions # 7:

Which of the following are scoped applications related to the Risk and Compliance applications? (Choose

four.)

Options:

A.

GRC: GRC Profiles


B.

GRC: Attestation Design


C.

GRC: UCF Compliance


D.

GRC: Policy and Compliance


E.

GRC: Performance Analytics


F.

GRC: Risk Management


Expert Solution
Questions # 8:

What three records need to be set-up when integrating with a provider RSS feed? (Choose three.)

Options:

A.

Feed sources record


B.

Provider record


C.

Regulatory Feed record


D.

Connection and Credentials record


E.

Regulatory Change Task record


Expert Solution
Questions # 9:

Which of the following tables exist within the GRC: Profiles application scope? (Choose three.)

Options:

A.

sn_grc_profile_type


B.

sn_grc_indicator


C.

sn_grc_compliance_policy_statement


D.

sn_grc_risk_definition


E.

sn_grc_profile_class


Expert Solution
Questions # 10:

What can assessors do when a risk is in the state of Assess on a classic risk assessment?

Choose 2 answers

Options:

A.

set the risk to Monitor


B.

Delete the ns<


C.

Deactivate the risk


D.

Answer the assessment


E.

set the risk back to Draft


Expert Solution
Viewing page 1 out of 5 pages
Viewing questions 1-10 out of questions