
2023 Current CIS-RCI dumps Preparation through Our Practice Test
100% Reliable Microsoft CIS-RCI Exam Dumps Test Pdf Exam Material
NEW QUESTION # 20
Why would you create Entity classes?
- A. To show relationships between tables or objects you are tracking that doesn't otherwise exist anywhere in ServiceNow
- B. To be assigned to risk statements, which generate risks for every Entity listed in the Entity Class
- C. To be assigned to Control Objectives, which generate Controls for every Entity listed in the Entity class
- D. To show relationships between Entities and Policies and map them directory to Citations
Answer: C
Explanation:
Explanation/Reference: https://docs.servicenow.com/bundle/orlando-governance-risk-compliance/page/product/grc- common/task/t_CreateProfileTypes.html
NEW QUESTION # 21
You are working with your customer to determine necessary audit management workflow configurations.
What
should they know about the approval process for audit engagements? (Choose three.)
- A. If the engagement is rejected, it automatically moves back to the Fieldwork state.
- B. If the engagement is rejected, it automatically moves into the Scope state.
- C. If the engagement is approved and there are remaining open tasks or issues, it automatically moves into the Follow Up state.
- D. If the engagement is approved and there are remaining open tasks or issues, it automatically moves into the Fieldwork state.
- E. If the engagement is approved and there are no remaining open tasks or issues, it automatically moves into the Closed state.
Answer: A,D,E
NEW QUESTION # 22
What minimum role is needed to bulk initiate risk assessments using the risk assessment scheduler?
- A. sn_risk.admin
- B. sn_risk.manager
- C. sn_risk.user
- D. sn_grc.business_user
Answer: B
NEW QUESTION # 23
Controls are generated from a Control Objective when what is applied to it?
- A. Indicator template
- B. Policy
- C. Entity Type
- D. Citation
Answer: A
NEW QUESTION # 24
Which of the following are triggers for automatic creation of an issue? (Choose two.)
- A. Policy Exception Not approved
- B. Indicator result is Failed or Not Passed
- C. Control tests have been assigned but not tested
- D. Attestation result is Not Implemented
Answer: C,D
NEW QUESTION # 25
Which feature would you use to track completion of certain tasks?
- A. Workflow Editor
- B. Related Lists
- C. SLAs
- D. Notifications
Answer: A
NEW QUESTION # 26
What is the minimum role required to create a risk assessment methodology (RAM)?
- A. sn_compliance.admin
- B. sn_risk.admin
- C. sn_risk.manager
- D. sn_risk.user
Answer: C
NEW QUESTION # 27
As a customer reaches greater GRC maturity, what can we expect to see occurring across their organization?
(Choose three.)
- A. Reliance on spreadsheet management for risk reporting
- B. Cross-functional process automation
- C. Single Risk and Control frameworks across enterprise available to all stakeholders
- D. Reactive strategies for GRC activities
- E. Continuous real-time monitoring of control performance
Answer: C,D,E
NEW QUESTION # 28
Which of the following extends from items?
- A. Issue
- B. Citation
- C. Controls
- D. Policy
Answer: D
NEW QUESTION # 29
Which table extends from the Content Table?
- A. Risk Record
- B. Risk Framework
- C. Risk Response Task
- D. Risk Statement
Answer: D
NEW QUESTION # 30
An external audit team needs to view all of your published policies and controls? Which role can you give the team members?
- A. sn_audit_manager
- B. sn_audit.external_auditor
- C. sn_risk_user
- D. sn_compliance_user
Answer: B
NEW QUESTION # 31
There is a direct relationship between Entity Class and Entity Type when:
- A. There is no direct relationship
- B. They have the same Entities
- C. They leverage the same reporting
- D. They have the same Entity Types
Answer: D
NEW QUESTION # 32
Which of the following are a part of the GRC: Advanced Risk scope? (Choose two.)
- A. Risk Assessment Methodologies
- B. Risk Criteria Matrix
- C. Risk Framework
- D. Risk Hierarchy
Answer: A,D
NEW QUESTION # 33
The ServiceNow Platform requires which external components in order to ingest data from other systems?
- A. The platform has Integration Service that allow users and developers to ingest data from a variety of sources
- B. A messaging bus needs to be developed
- C. The platform allows XML to be ingested, and it required developers to leverage XSLT to map it properly
- D. The platform includes an SDK template that allows developers to enhance it using Java
Answer: A
NEW QUESTION # 34
Common controls from UCF import into which table in ServiceNow?
- A. sn_complilance_authority_document
- B. sn_compliance_policy_exception
- C. sn_compliance_policy
- D. sn_compliance_policy_statement
Answer: B
NEW QUESTION # 35
The consolidated assessment feature can be used on which of the following? (Choose two.)
- A. Issues
- B. Classic risk assessments
- C. Control tests
- D. Control attestations
Answer: A,D
NEW QUESTION # 36
What happens when you assign an Entity Type to a Control Objective?
- A. A policy is created automatically for every Entity listed in the Entity Type
- B. A control is automatically generated for every Entity listed in the Entity Type
- C. The Entity Type presents a compliance score and controls tied to it
- D. An assessment is automatically generated to test each Entity listed in the Entity Type
Answer: B
NEW QUESTION # 37
Jim is an Audit Manager. In addition to Audit Manager, which roles should be assigned to ensure he can manage the audit process as well as other GRC functions related to audit? (Choose two.)
- A. sn_audit.user
- B. sn_grc.reader
- C. sn_grc.user
- D. sn_grc.manager
- E. sn_grc.developer
Answer: A,D
NEW QUESTION # 38
Which is not a type of key compliance indicator?
- A. Manual
- B. Basic
- C. Reference
- D. Performance Analytics
- E. Scripted
Answer: E
NEW QUESTION # 39
Which tables extend the Content (sn_grc_content) table? (Choose two.)
- A. sn_risk_risk
- B. sn_compliance_policy_statement
- C. sn_compliance_citation
- D. sn_grc_issue
Answer: B,C
Explanation:
Explanation/Reference: https://docs.servicenow.com/bundle/orlando-governance-risk-compliance/page/product/grc-policy- and-compliance/reference/r_InstallWPolAndCompl.html
NEW QUESTION # 40
......
Free CIS-RCI Dumps are Available for Instant Access: https://www.actualtorrent.com/CIS-RCI-questions-answers.html
Based on Official Syllabus Topics of Actual ServiceNow CIS-RCI Exam: https://drive.google.com/open?id=1RWhtml593q7BhRhKExUSmBhfA4fBrq5-