ServiceNow
CIS-RCI
Q1:
How does GRC: Policy and Compliance Management track compliance to Authority Documents?
○
A
Citations are mapped to entity-scoped controls, which are tested as compliant or non-compliant.○
B
Authority Documents are mapped to individual policies, which are either marked compliant or non-compliant.○
C
Authority Documents are mapped to control objectives and compliance is checked when controls are tested as compliant or non-compliant.○
D
Citations are mapped to control objectives, and compliance is checked when controls are tested as compliant or non-compliant.
ServiceNow
CIS-RCI
Q2:
The advanced planning capability enables integration of Advanced Audit with PPM. If the advanced planning capability is selected when the audit plan is created, what extra related lists display on the engagement record in addition to the related lists displayed with basic planning? (Choose three.)
☐
A
Time card☐
B
Resource plan☐
C
Entities☐
D
Cost plan☐
E
Milestones
ServiceNow
CIS-RCI
Q3:
The Calculated Risk Score utilizes data from the Inherent and Residual Risk scores to determine an adjusted ALE and Score. What other data drives the adjustments?
○
A
Audit Scores○
B
Attestation Score○
C
Configuration Test Score○
D
Control and Indicator Failure Factors
ServiceNow
CIS-RCI
Q4:
What are some of the drivers for customers to get the GRC suite of applications? (Choose four.)
☐
A
They would like efficiency☐
B
They would like integrated reporting☐
C
They would like transparency☐
D
They would like automated customer service☐
E
They would like custom websites☐
F
They would like workflow driven processes
ServiceNow
CIS-RCI
Q5:
Which filter navigation syntax displays the default form view of the Risk table in the Content Frame?
○
A
sn_risk_risk.form○
B
sn_risk_risk.LIST○
C
sn_risk_risk.FORM○
D
sn_risk_risk.list