Pass the ServiceNow Risk and Compliance CIS-RCI Questions and answers with CertsForce

Viewing page 5 out of 5 pages
Viewing questions 41-50 out of questions
Questions # 41:

The Risk Scoring values are entered on the Risk Statement. What records inherits the values from the Risk

Statement?

Options:

A.

Risk Criteria Matrix


B.

Risk Framework


C.

Registered Risk


D.

Risk Response Issue


Expert Solution
Questions # 42:

What must an implementer configure to allow users to submit a policy exception from a non-GRC application like Security Operations?

Choose 2 answers

Options:

A.

Approval rules


B.

Exception questionnaire


C.

Exception risk rules


D.

Integration registry


E.

verification rules


Expert Solution
Questions # 43:

Service Level Agreements can be used for the which of the following? (Choose two.)

Options:

A.

Risk Issues


B.

Risk


C.

Risk Statement


D.

Risk Response Task


E.

Risk Framework


Expert Solution
Questions # 44:

What is a risk register?

Options:

A.

Repository for all unidentified risks


B.

Repository for risk frameworks


C.

Repository for risk statements


D.

Repository for all identified risks


E.

Repository for risk criteria


Expert Solution
Questions # 45:

Jim is an Audit Manager. In addition to Audit Manager, which roles should be assigned to ensure he can

manage the audit process as well as other GRC functions related to audit? (Choose two.)

Options:

A.

sn_grc.manager


B.

sn_audit.user


C.

sn_grc.user


D.

sn_grc.reader


E.

sn_grc.developer


Expert Solution
Questions # 46:

What are the terms for level of risk before and after any actions are taken? (Choose two.)

Options:

A.

Operational risk


B.

Digital risk


C.

Inherent risk


D.

Calculated risk


E.

Residual risk


F.

Solutioned risk


Expert Solution
Questions # 47:

Which table stores the links from Policy to Control Objective?

Options:

A.

[sn_compliance_m2m_policy_profile_type]


B.

[sn_compliance_m2m_policy_profile]


C.

[sn_compliance_m2m_policy_statement]


D.

[sn_compliance_m2m_statement_profile_type]


Expert Solution
Questions # 48:

What actions does the GRC Business User Lite role allow a user to take?

Choose 2 answers

Options:

A.

Group control attestations


B.

Approve an Advanced Risk assessment


C.

Read a policy exception


D.

Create a risk assessment


E.

Group issues


Expert Solution
Questions # 49:

What type of GRC record would generate for the departments of Sales, Operations, or IT?

Options:

A.

Entity types


B.

Entity classes


C.

Entitles


D.

Entity objects


Expert Solution
Viewing page 5 out of 5 pages
Viewing questions 41-50 out of questions