CIS-VRM Exam Info and Free Practice Test All-in-One Exam Guide Jul-2023 [Q36-Q58]

Share

CIS-VRM Exam Info and Free Practice Test All-in-One Exam Guide Jul-2023

Pass ServiceNow CIS-VRM Actual Free Exam Q&As Updated Dump Jul 18, 2023


ServiceNow CIS-VRM (Certified Implementation Specialist - Vendor Risk Management) exam is a certification program designed to validate the knowledge and skills of individuals who wish to implement ServiceNow's Vendor Risk Management (VRM) application. In today's digital age, businesses often outsource services to third-party vendors to reduce costs and increase efficiency. However, this also increases the risk of data breaches and security threats. A vendor risk management solution, such as the one offered by ServiceNow, helps organizations identify, assess, and manage these risks.


The CIS-VRM certification exam is aimed at individuals who have experience working with vendor risk management systems or have a background in IT risk management. The exam tests an individual's knowledge of the ServiceNow platform, including its features and functionalities, as well as their ability to apply best practices in vendor risk management to the platform.

 

NEW QUESTION # 36
If clean data is not provided by the customer, what baseline solutions are available within the platform? (Choose three.)

  • A. Service graph connector
  • B. Field normalization plugin
  • C. Integration hub ETL plugin
  • D. System definition fix scripts module
  • E. System import transform map scripts

Answer: B,C,D


NEW QUESTION # 37
Which of the following is an objective of Vendor Risk Management? (Choose two.)

  • A. To assess and manage the risk from interactions with vendors and third parties
  • B. To help vendors improve their security posture and preparedness
  • C. To help negotiate the best possible price for a product or service from the vendor
  • D. To verify that vendors have adequate measures and processes in place to ensure profitability of vendor

Answer: A,B


NEW QUESTION # 38
Which of the following is the main benefit of using the Vendor Portal?

  • A. Assessments are performed via the Vendor Portal and spreadsheets
  • B. More efficiently communicating Assessments with a single contact
  • C. Assessments are shared through the Vendor Portal and email
  • D. More efficiently completing Assessments via the Vendor Portal

Answer: D


NEW QUESTION # 39
In the baseline, what component sends reminder notifications about assessments?

  • A. A Workflow
  • B. Events fired by a Business Rule
  • C. Reminder notifications are triggered on-demand
  • D. A Scheduled Job

Answer: D


NEW QUESTION # 40
Which of these must be true in order for a vendor risk issue to be visible in the Vendor Portal?

  • A. The primary vendor contact must have the sn_vdr_issues role
  • B. There must be at least one secondary contact for the vendor
  • C. Issues are always visible in the vendor portal
  • D. The Visible in vendor portal field must have a value of true

Answer: D


NEW QUESTION # 41
Before any changes to the configuration of an application are made, it is recommended that the correct update set and application scope are selected. What role is required for this functionality?

  • A. The User Administrator role is required for this functionality
  • B. The Data Administrator role is required for this functionality
  • C. The System Administrator role is required for this functionality
  • D. The Vendor Administrator role is required for this functionality

Answer: C


NEW QUESTION # 42
What are some of the purposes of a Vendor Risk Issue? (Choose two.)

  • A. Track remediation of compliance gaps
  • B. Log access-related incidents for the vendor portal
  • C. Accept risks identified in the assessment
  • D. Indicate vendors that need further assessment

Answer: A,D


NEW QUESTION # 43
During the Generating Observations phase of the Vendor Risk Assessment, what action might be taken by the Risk Assessor?

  • A. Create issues from the assessment if necessary
  • B. Answer questions the vendor forgot to answer
  • C. Update the vendor risk score
  • D. Email the vendor

Answer: A


NEW QUESTION # 44
On the Contact record, there is a field for the Vendor name. This is which field (with a label change) from the sys_user table?

  • A. sn_vendor
  • B. vendor_name
  • C. company
  • D. company_name

Answer: B


NEW QUESTION # 45
A Vendor Risk Task can be created from which of the following records?

  • A. Policy, Assessment, Vendor
  • B. Vendor Risk Issue, Assessment, Vendor
  • C. Risk, Policy, Assessment
  • D. Policy, Vendor Risk issue, Assessment

Answer: D


NEW QUESTION # 46
Vendor Risk Tasks are saved to which one of the following tables?

  • A. [task]
  • B. [planned_task]
  • C. [sn_vdr_risk_asmt_task]
  • D. [sn_vendor_risk_task]

Answer: D


NEW QUESTION # 47
On which of the following tables can you create vendor risk reports? (Choose three.)

  • A. Vendor Activity [vm_vendor_activity]
  • B. Vendor Risk Issue [sn_vdr_risk_asmt_issue]
  • C. Company [core_company]
  • D. Vendor Contact [vm_vendor_contact]
  • E. Vendor Risk Assessment [sn_vdr_risk_asmt_assessment]

Answer: A,B,E


NEW QUESTION # 48
What third-party vendor security evaluation solutions are commonly integrated with VRM out-of-the-box? (Choose two.)

  • A. Vendor Insights
  • B. Security Scorecard
  • C. Bitsight
  • D. MyScoreMetrics

Answer: B,C


NEW QUESTION # 49
Which statement best describes the SIG Lite?

  • A. The SIG Lite is a ServiceNow developed questionnaire
  • B. The SIG Lite is a company specific questionnaire
  • C. The SIG Lite assesses basic levels of due diligence and provides a broad but high-level understanding about internal security controls
  • D. The SIG Lite assesses service providers that store or manage highly sensitive or regulated information

Answer: C


NEW QUESTION # 50
Which of these options can be used in data cleansing when importing vendor data? (Choose three.)

  • A. Data Import or Data Source Transform
  • B. Data Policies
  • C. UI Policies
  • D. Fix Scripts
  • E. Access Control Lists
  • F. Field Normalization Rules

Answer: A,D,F


NEW QUESTION # 51
A Vendor Risk Assessment that consists of a SIG Lite questionnaire and two document requests are displayed as how many total requests in the Vendor Portal?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C


NEW QUESTION # 52
What is the definition of 'Risk Management'?

  • A. The process of conforming to standards, policies, and remediation of audit findings
  • B. Policies/Standards/Procedures established to ensure an organization is aligned with corporate strategy and expectations are clearly defined
  • C. The elimination of vulnerable surface area in an enterprise environment
  • D. Process to identify, assess, and respond to risks, threats and vulnerabilities that could compromise the business

Answer: D


NEW QUESTION # 53
When an assessor creates an issue or task from the vendor record, it is grouped with other issues or tasks for what ServiceNow entity?

  • A. Assessment
  • B. Remediation plan
  • C. All vendors
  • D. Vendor

Answer: A


NEW QUESTION # 54
The Template Designer is leveraged to create which of the following? (Choose two.)

  • A. Assessment Template
  • B. Document Request Template
  • C. Vendor Risk Assessment
  • D. Questionnaire Template

Answer: B,D


NEW QUESTION # 55
Key data sources for Vendor Risk reporting include which of the following tables? (Choose two.)

  • A. Vendor Benchmark Scores [sn_vdr_client_score]
  • B. Vendor Risk Issue [sn_vdr_risk_asmt_issue]
  • C. Questionnaire Templates [asmt_metric_type]
  • D. Vendor Risk Assessment [sn_vdr_risk_asmt_assessment]
  • E. Survey Scores [snc_survey_scores]

Answer: B,D


NEW QUESTION # 56
A Vendor Risk Manager needs to run a report displaying Critical Vendors. On which table would this person run a report?

  • A. Vendor Contact (vm_vdr_contact]
  • B. Company [core_company]
  • C. Vendor Risk Assessment [sn_vdr_risk_asmt_assessment]
  • D. Vendor Risk Issue [sn_var_asmt_issue]

Answer: C


NEW QUESTION # 57
Who is able to change the password for the vendor contact? (Choose two.)

  • A. sys_admin
  • B. Vendor Contract Relationship Manager
  • C. Vendor Risk Reviewer
  • D. Vendor contact via the Forgot Password link

Answer: A,D


NEW QUESTION # 58
......


The CIS-VRM certification exam is designed for professionals who want to demonstrate their expertise in implementing Vendor Risk Management solutions on the ServiceNow platform. This certification validates a candidate's ability to configure and implement the Vendor Risk Management module, manage vendor risk assessments, and analyze risk data. The exam is intended for ServiceNow implementation specialists, consultants, and architects who have experience working with the Vendor Risk Management module.

 

Online Questions - Valid Practice CIS-VRM Exam Dumps Test Questions: https://www.pass4surecert.com/ServiceNow/CIS-VRM-practice-exam-dumps.html

Latest CIS-VRM Actual Free Exam Updated 62 Questions: https://drive.google.com/open?id=1hO5Ur1SSMkMHHEYYgPgTtGDbPLyD6x4P