
2025 100% Free CIS-RCI Daily Practice Exam With 168 Questions
CIS-RCI exam torrent ServiceNow study guide
The ServiceNow CIS-RCI exam consists of approximately 60 multiple-choice questions and is timed for 90 minutes. The passing score for the exam is 70%. CIS-RCI exam can be taken online, and candidates are required to register for the exam through the ServiceNow certification portal.
NEW QUESTION # 70
What new related list was added to the risk statement and entity records after migrating to advanced risk assessment?
- A. Risk assessments related list
- B. Aggregated risk related list
- C. Assessment instances related list
- D. Risk tolerance related list
Answer: B
NEW QUESTION # 71
Which of the following is the correct statement about Risk Scoring formulas?
- A. ALE × ARO = SLE
- B. Impact × Urgency = ALE
- C. ALE × ARO = Compliance Score
- D. SLE × ARO = ALE
Answer: A
NEW QUESTION # 72
Which role reviews the risk response and moves the Risk record into the Monitor state at the appropriate time?
- A. Risk Manager
- B. Risk User
- C. Risk Owner
- D. Risk Reader
Answer: A
Explanation:
Reference:
task/t_CreateRisk.html
NEW QUESTION # 73
In which state can reviewers either send the Policy back to draft or forward it by requesting approval?
- A. Published
- B. Retired
- C. Awaiting Approval
- D. Review
Answer: D
NEW QUESTION # 74
The consolidated assessment feature can be used on which of the following? (Choose two.)
- A. Classic risk assessments
- B. Issues
- C. Control tests
- D. Control attestations
Answer: B,D
NEW QUESTION # 75
The overall goal of Entity Classes is to:
- A. Show relationships between Entities and policies and map them directly to Citations
- B. Associate Control Objectives and Risk Statements with Risks and Controls
- C. To provide specific information about an Entity, such as who owns the Entity
- D. To enable reporting and to support advanced risk assessment
Answer: C
NEW QUESTION # 76
Control indicators may be triggered or scheduled in which state?
- A. Retired
- B. Draft
- C. Attest
- D. Monitor
- E. Review
Answer: C
NEW QUESTION # 77
Critical parts of a successful GRC implementation are understanding the customers current: (Choose three.)
- A. Audit failures
- B. Data breaches
- C. GRC processes
- D. Regulatory requirements
- E. Risk and Compliance personas
Answer: A,C,D
NEW QUESTION # 78
Annualized Loss Expectancy is a feature of which risk score method?
- A. Quantitative
- B. Residual
- C. Inherent
- D. Qualitative
Answer: A
NEW QUESTION # 79
What GRC module would you access in order to update Entity Types?
- A. CMDB
- B. Scoping > Entity Types
- C. Risk > Entities
- D. Scoping > Profiles
Answer: B
Explanation:
Reference: https://docs.servicenow.com/bundle/orlando-governance-risk-compliance/page/product
/grccommon/
concept/c_Scoping.html
NEW QUESTION # 80
What actions does an implementer need to take to configure confidentiality?
Choose 3 answers
- A. Review and update master users
- B. Configure which tables inherit the confidentiality setting
- C. Review and update allowed users
- D. Review and update inheritance
- E. configure fields to be included in confidentiality
Answer: B,D,E
NEW QUESTION # 81
Control Failure Factor represents the impact of Control Failures on what score?
- A. Inherent
- B. Residual
- C. Total
- D. Calculated
Answer: B
Explanation:
Reference: https://docs.servicenow.com/bundle/orlando-governance-risk-compliance/page/product/grc-risk/ task/t_CreateRisk.html
NEW QUESTION # 82
What table extends from Document Table?
- A. Risk Framework
- B. Risk Response Task
- C. Risk
- D. Risk Statement
Answer: C
NEW QUESTION # 83
Which of the following tables exist within the GRC: Profiles application scope? (Choose three.)
- A. sn_grc_profile_class
- B. sn_grc_indicator
- C. sn_grc_compliance_policy_statement
- D. sn_grc_risk_definition
- E. sn_grc_profile_type
Answer: A,B,E
NEW QUESTION # 84
Who can move a Policy record from Review into the next state?
- A. The sys admin
- B. Any reviewer
- C. The named policy owner
- D. The compliance manager
Answer: A
NEW QUESTION # 85
For a particular risk assessment methodology (RAM), the control effectiveness score is calculated based on an individual assessment of controls. What are options for control identification? (Choose three.)
- A. Controls are identified from related issues
- B. Controls are identified ad-hoc
- C. Controls are identified from library and ad-hoc
- D. Controls are identified from indicator results
- E. Controls are identified from library
Answer: B,C,E
NEW QUESTION # 86
Which risk response activity identifies and implements additional controls to minimize risk?
- A. Mitigate
- B. Transfer
- C. Accept
- D. Avoid
Answer: A
NEW QUESTION # 87
Which table extends from the Content Table?
- A. Risk Framework
- B. Risk Response Task
- C. Risk Record
- D. Risk Statement
Answer: D
NEW QUESTION # 88
What are some of the features of scoped applications for GRC? (Choose three.)
- A. All components have a namespace prefix for identification
- B. Requires an entitlement for all environments
- C. Provides access to all global data
- D. Ability to view all components from the sys_metadata table
- E. Ability to restrict access to available data
Answer: B,D,E
NEW QUESTION # 89
Control Failure Factor represents the impact of Control Failures on what score?
- A. Inherent
- B. Residual
- C. Total
- D. Calculated
Answer: B
Explanation:
Explanation/Reference: https://docs.servicenow.com/bundle/orlando-governance-risk-compliance/page/product/grc-risk/ task/t_CreateRisk.html
NEW QUESTION # 90
What is associated with the control objective, that is active with the setting to create controls automatically enabled, to generate controls?
- A. Policy
- B. indicator template
- C. Citation
- D. Entity Type
Answer: D
NEW QUESTION # 91
......
ServiceNow CIS-RCI (Certified Implementation Specialist - Risk and Compliance) exam is a certification program designed to validate the knowledge and skills of professionals who implement risk and compliance solutions using the ServiceNow platform. Certified Implementation Specialist - Risk and Compliance certification is ideal for individuals working in IT risk management, compliance, audit, and security operations. CIS-RCI exam is developed to assess the candidate's knowledge and understanding of ServiceNow risk and compliance management, including policies, controls, and risk assessments.
Use Valid New CIS-RCI Test Notes & CIS-RCI Valid Exam Guide: https://troytec.itpassleader.com/ServiceNow/CIS-RCI-dumps-pass-exam.html