Halloween Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmaspas7

Easiest Solution 2 Pass Your Certification Exams

CIS-RCI ServiceNow Certified Implementation Specialist - Risk and Compliance Free Practice Exam Questions (2025 Updated)

Prepare effectively for your ServiceNow CIS-RCI Certified Implementation Specialist - Risk and Compliance certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2025, ensuring you have the most current resources to build confidence and succeed on your first attempt.

Page: 2 / 2
Total 165 questions

What happens when you assign an Entity Type to a Control Objective?

A.

An assessment is automatically generated to test each Entity listed in the Entity Type

B.

A policy is created automatically for every Entity listed in the Entity Type

C.

A control is automatically generated for every Entity listed in the Entity Type

D.

The Entity Type presents a compliance score and controls tied to it

An external audit team needs to view all of your published policies and controls? Which role can you give the team members?

A.

sn_audit_manager

B.

sn_compliance_user

C.

sn_audit.external_auditor

D.

sn_risk_user

What would you use in order to accommodate a customer’s unique process around policy approvals? For example, each policy needs a second layer of approval.

A.

Create a new field and create notifications

B.

Add a new related list to keep track of who has already approved it and who hasn’t approved yet

C.

Add a UI Action to track who the stakeholders are

D.

Create a new workflow in the workflow editor

Which of the following are a part of the GRC: Advanced Risk scope? (Choose two.)

A.

Risk Hierarchy

B.

Risk Assessment Methodologies

C.

Risk Criteria Matrix

D.

Risk Framework

Which of the following roles can create issues? (Choose three.)

A.

Risk Reader

B.

Compliance Reader

C.

External Auditor

D.

Compliance User

E.

Audit User

F.

Risk Manager

What GRC module would you access in order to update Entity Types?

A.

Risk > Entities

B.

Scoping > Profiles

C.

Scoping > Entity Types

D.

CMDB

How can you get the SOX content pack?

A.

ServiceNow Store

B.

Patch Update

C.

Platform Upgrade

D.

Professional Services

The Calculated Risk Score utilizes data from the Inherent and Residual Risk scores to determine an adjusted ALE and Score. What other data drives the adjustments?

A.

Audit Scores

B.

Attestation Score

C.

Configuration Test Score

D.

Control and Indicator Failure Factors

Which role is not part of ServiceNow GRC?

A.

Risk User

B.

Risk Developer

C.

Risk Manager

D.

Risk Reader

Which of the following relationship sets are considered a many-to-many relationship? (Choose three.)

A.

Entity Type and Entity Class

B.

Indicator Template and Entity Type

C.

Control and Risk

D.

Control Objective and Entity Type

E.

Entity Type and Entity

Common controls from UCF import into which table in ServiceNow?

A.

sn_compliance_policy

B.

sn_compliance_policy_statement

C.

sn_compliance_policy_exception

D.

sn_complilance_authority_document

When reviewing the Control Objective Table form with your customer, what are the most common choice lists to be configured? (Choose three.)

A.

Reference

B.

Classification

C.

Category

D.

Type

E.

Description

When calculating compliance scores, what is true about the weighting of Controls? (Choose two.)

A.

Controls are not weighted equally by default

B.

The weight cannot be changed

C.

The default value is 10

D.

The weight of the Control is set when the Control is created

Which table stored the links from Entity to Entity Types?

A.

[sn_compliance_m2m_profile_profile_type]

B.

[sn_risk_m2m_risk_profile]

C.

[sn_compliance_m2m_policy_profile]

D.

[sn_grc_m2m_profile_profile_type]

Which scheduled jobs in the GRC: Profiles scope help manage the population of Entity records? (Choose two.)

A.

GRC indicator nightly run

B.

GRC Entity and Risk Statement Data Collection

C.

GRC Profile Generation

D.

GRC Refresh Risk Scores

What new related list was added to the risk statement and entity records after migrating to advanced risk assessment?

A.

Aggregated risk related list

B.

Risk assessments related list

C.

Risk tolerance related list

D.

Assessment instances related list

Page: 2 / 2
Total 165 questions
Copyright © 2014-2025 Solution2Pass. All Rights Reserved