Pass the ServiceNow Risk and Compliance CIS-RCI Questions and answers with CertsForce

Viewing page 2 out of 5 pages
Viewing questions 11-20 out of questions
Questions # 11:

Which of the following are the classic risk score types that ServiceNow tracks? (Choose three.)

Options:

A.

Residual


B.

Inherent


C.

Calculated


D.

Operational


E.

Digital


Expert Solution
Questions # 12:

What table, along with the Policy table, is linked to the Control Objective table by a many-to-many

relationship?

Options:

A.

Entity Class


B.

Citation


C.

Authority Documents


D.

Risk Framework


Expert Solution
Questions # 13:

What is the minimum role required to create a risk assessment methodology (RAM)?

Options:

A.

sn_compliance.admin


B.

sn_risk.user


C.

sn_risk.manager


D.

sn_risk.admin


Expert Solution
Questions # 14:

What are the risk response options available when responding on an advanced risk assessment?

Choose 2 answers

Options:

A.

Create one or multiple risk response tasks


B.

Required to create at least one risk response task


C.

Skipped entirely based on attributes defined in the RAM


D.

Required to create a mitigation response task


Expert Solution
Questions # 15:

Which of the following are ServiceNow classic risk score types? (Choose three.)

Options:

A.

Applied


B.

Calculated


C.

Inherent


D.

Generated


E.

Residual


Expert Solution
Questions # 16:

Who can move a Policy record from Review into the next state?

Options:

A.

The sys admin


B.

The compliance manager


C.

Any reviewer


D.

The named policy owner


Expert Solution
Questions # 17:

The Calculated Risk Score utilizes data from the Inherent and Residual Risk scores to determine an adjusted ALE and Score. What other data drives the adjustments?

Options:

A.

Audit Scores


B.

Attestation Score


C.

Configuration Test Score


D.

Control and Indicator Failure Factors


Expert Solution
Questions # 18:

What is the minimum role needed to maintain entity types?

Choose 2 answers

Options:

A.

Risk user


B.

Risk Admin


C.

compliance user


D.

Compliance Manager


E.

Risk Manager


F.

Compliance Admin


Expert Solution
Questions # 19:

What new related list was added to the risk statement and entity records after migrating to advanced risk assessment?

Options:

A.

Aggregated risk related list


B.

Risk assessments related list


C.

Risk tolerance related list


D.

Assessment instances related list


Expert Solution
Questions # 20:

Setting up entity classes is required when using which GRC features? (Choose two.)

Options:

A.

Setting up an object-based risk assessment


B.

Adding to the policy exception integration registry


C.

Assessing the impact of a regulatory feed


D.

Leveraging classic risk assessments


E.

Leveraging advanced risk assessments


Expert Solution
Viewing page 2 out of 5 pages
Viewing questions 11-20 out of questions