CIS-RC Mock Paper 2

ServiceNow Gyan

CIS-RC Mock Paper 2

This Quiz contains Multiple Choice Questions related to Risk and Compliance Application that will help you to pass Certified Implementation Specialist – Risk and Compliance (CIS-RC) certification.


Number of Questions: 45

Time Limit: 1 Hour 30 Minutes

Passing Marks: 70%

Risk Response Tasks available in Advanced Risk application. (Select four)

Which role is required to set Audience for Policy Acknowledgement? (Select two)

In which state can reviewers either send the Policy back to draft or forward it by requesting approval?

Once the Risk Response Task is approved, the response task moves to which state?

After the risk assessment is done, on which basis the audit managers can decide if they want to audit the entities.

In which state, Indicators can be created to continuously monitor a risk’s exposure?

Risk statement table is extended from:

Policy Exceptions submitted via the Service Portal are based on:

What are the different scenarios under which issues can be created in audit management? (Select four)

The ServiceNow Platform requires which external components in order to ingest data from other systems?

The Risk thresholds in the Risk Criteria Matrix (default values) do not line up with company needs. What should you do?

If the engagement is rejected, the engagement automatically moves back to which state?

The Script Include where it is defined to change who can edit a policy in the “Review” state.

Tables extended from Audit Task [sn_audit_task]. (Select four)

The Script Include where it is defined to change how the compliance score roll up.

A Policy Exception cannot be approved: (Select two)

By default, Risks are created in which state?

For Risk, which role is required to create GRC Risk Assessment metric type?

The Tablename.CONFIG

In which state an attestation is active and sent to the control owner?

Policy table is extended from:

A repository of the key attributes of potential and known Risk Issues.

What is the database name of the table “Entity Class”?

The segment of the financial industry that governs the use of all electronic forms of payment.

The Citation table is a child table of which parent?

A Test template can be applies to _______

What are the different states available out of the box for Control Lifecycle?

In which state Risk rating is determined in Policy Exception?

If Approvers is/are not listed for policy, policy proceeds straight to which state?

What are the different options for adding content to GRC application? (Select three)

Who can manually retire the Policy? (Choose two)

When a Risk Response task is moved to Review state, who is notified through Notifications?

In which state Campaigns are created for Published Policy records?

Which role is required to assign Risk Response task?

Minimum role required to create a Risk Response.

What table stores the links from “Entity Type to Risk Statement”?

The Business Rule which set the substate to awaiting approvals if there are Verification rules for the Policy Exception?

Type of Indicators available by default. (Select three)

For Control records, who can modify the Control in the Draft state?

Which of the following are scoped applications related to the Risk and Compliance applications? (Choose four.)

Assessment type in Advance Risk application. (Select three)

Risk Framework table is extended from:

There is a direct relationship between Entity Class and Entity Type when:

All of the following are PARENT tables which exist within the GRC Entities application scope EXCEPT.

What are the different states available out of the box for Policy Lifecycle?