NEW 2024 Certification Sample Questions CIS-VRM Dumps & Practice Exam [Q19-Q44]

Share

NEW 2024 Certification Sample Questions CIS-VRM Dumps & Practice Exam

CIS-VRM Deluxe Study Guide with Online Test Engine


ServiceNow CIS-VRM certification exam is a valuable credential for professionals who work with the ServiceNow VRM platform. It demonstrates expertise in using the platform to manage vendor and supplier risks, and can help individuals advance their careers in the field of risk management. CIS-VRM exam covers a range of topics related to VRM, and is intended for individuals with experience implementing VRM solutions using ServiceNow.


Earning the CIS-VRM certification demonstrates that a professional has the knowledge and skills required to implement and manage vendor risk management processes using ServiceNow. It also indicates that the professional can collaborate with stakeholders to develop and implement vendor risk management policies and procedures that align with the organization's goals and objectives. Moreover, CIS-VRM certified professionals can help organizations identify and mitigate vendor-related risks, which can improve the organization's overall security posture and regulatory compliance.

 

NEW QUESTION # 19
The Template Designer is leveraged to create which of the following? (Choose two.)

  • A. Vendor Risk Assessment
  • B. Document Request Template
  • C. Assessment Template
  • D. Questionnaire Template

Answer: B,D


NEW QUESTION # 20
Which functions can be performed in the Vendor Portal? (Choose three.)

  • A. Requests via virtual agent
  • B. Schedule web meetings
  • C. Contact Management
  • D. Issue remediation
  • E. Assessment response

Answer: A,C,E


NEW QUESTION # 21
The VRM issue management process is frequently unique to an organization. What two ServiceNow provided building blocks were covered in this course to help with customer needs that might arise during the lifecycle of VRM issues? (Choose two.)

  • A. Incident Management
  • B. Workflow Editor
  • C. Service Management
  • D. Flow Designer

Answer: A,D


NEW QUESTION # 22
The Vendor records are stored in which table?

  • A. User [sys_user]
  • B. Task [task]
  • C. Company [core_company]
  • D. Department [cmn_department]

Answer: C


NEW QUESTION # 23
The Template Designer contains which of the following elements? (Choose two.)

  • A. Properties for the supported question data types
  • B. Option to create an Assessment Template and assign to a vendor
  • C. Options to weight questions or sections
  • D. Design canvas for creating the questions and answers

Answer: A,C


NEW QUESTION # 24
For each questionnaire template/assessment metric type, how many vendor risk areas can be designated?

  • A. As many as desired
  • B. Two
  • C. None
  • D. One

Answer: A


NEW QUESTION # 25
Baseline email notifications that help to automate the vendor risk management process are installed with which plugin?

  • A. GRC: Policy and Compliance Management
  • B. GRC: Risk Management
  • C. GRC: Audit Management
  • D. GRC: Vendor Risk Management

Answer: A


NEW QUESTION # 26
What is the minimum role required to create a new Vendor Risk Issue?

  • A. Vendor Risk Assessor [sn_vdr_risk_asmt.vendor_assessor]
  • B. System Administrator [admin]
  • C. Vendor Assessment Reviewer [sn_vdr_risk_asmt.vendor_assessment_reviewer]
  • D. Vendor Risk Manager [sn_vdr_risk_asmt.vendor_risk_manager]

Answer: B


NEW QUESTION # 27
In addition to the "Design canvas", which elements does the Template Designer contain? (Choose three.)

  • A. Controls for the supported question data types
  • B. Question and Categories tabs that contain question/categories that were added to the Question Bank
  • C. FAQ Page and Tour option
  • D. Header bar which contains tabs that display different view and a menu of various functions
  • E. Risk criteria to identity conditions and risk areas

Answer: A,B,D


NEW QUESTION # 28
Which of these must be true in order for a vendor risk issue to be visible in the Vendor Portal?

  • A. The primary vendor contact must have the sn_vdr_issues role
  • B. There must be at least one secondary contact for the vendor
  • C. Issues are always visible in the vendor portal
  • D. The Visible in vendor portal field must have a value of true

Answer: D


NEW QUESTION # 29
Roles preceded by sn_vdr_risk are for which scope?

  • A. GRC: Risk Management
  • B. GRC: Vendor Risk Core
  • C. GRC: Vendor Risk Remediation
  • D. GRC: Vendor Risk Management

Answer: D


NEW QUESTION # 30
A vendor is assessed and responds to a question which impacts one of the Controls applied to them. When is the Control Status updated?

  • A. When the Vendor Risk Assessment response is saved
  • B. When the Vendor Risk Assessment State is Responses Received
  • C. When the Vendor Risk Assessment State is Finalizing with Vendor or Closed
  • D. When all Questions in the Vendor Risk Assessment have a response

Answer: C


NEW QUESTION # 31
Where can the score for each Assessment Metric or Metric Category be configured?

  • A. Assessment record
  • B. Assessment Template record
  • C. Assessment Metric Type record
  • D. Assessment Metric Category record

Answer: B


NEW QUESTION # 32
Which statement accurately describes the visibility and audit history of actions and communications in the Vendor Risk Management application?

  • A. The vendor and assessor interactions are captured in the Vendor Risk Issue record and are only visible from the platform view
  • B. The Vendor Risk Issues created and the activity and history are lost from the Vendor Assessment Portal when the associated vendor contact changes
  • C. The Vendor Risk Issues created and the activity and history will remain in the Vendor Assessment Portal even when vendor contacts change
  • D. The vendor and assessor interactions are captured in the Vendor Risk Issue record and are only visible from the portal view

Answer: C


NEW QUESTION # 33
What is the no code option to cleaning data being loaded into the Vendor Risk application?

  • A. Field Normalization
  • B. Import
  • C. Fix Scripts

Answer: A


NEW QUESTION # 34
Before any changes to the configuration of an application are made, it is recommended that the correct update set and application scope are selected. What role is required for this functionality?

  • A. The Data Administrator role is required for this functionality
  • B. The Vendor Administrator role is required for this functionality
  • C. The User Administrator role is required for this functionality
  • D. The System Administrator role is required for this functionality

Answer: D


NEW QUESTION # 35
On which of the following tables can you create vendor risk reports? (Choose three.)

  • A. Company [core_company]
  • B. Vendor Contact [vm_vendor_contact]
  • C. Vendor Risk Issue [sn_vdr_risk_asmt_issue]
  • D. Vendor Risk Assessment [sn_vdr_risk_asmt_assessment]
  • E. Vendor Activity [vm_vendor_activity]

Answer: C,D,E


NEW QUESTION # 36
Which of the following is the main benefit of using the Vendor Portal?

  • A. More efficiently communicating Assessments with a single contact
  • B. More efficiently completing Assessments via the Vendor Portal
  • C. Assessments are shared through the Vendor Portal and email
  • D. Assessments are performed via the Vendor Portal and spreadsheets

Answer: B


NEW QUESTION # 37
What can be used to automatically assign a Vendor tier value?

  • A. A Visual Task Board
  • B. A Vendor Tiering Rule
  • C. A Risk Assessment
  • D. A configuration setting
  • E. A Tiering Assessment

Answer: B


NEW QUESTION # 38
What are the features of Vendor Risk Issues? (Choose two.)

  • A. Can be generated on-demand or automatically due to an incorrect answer
  • B. Generate audit tasks for the vendor risk team
  • C. Can only be seen by the customer's vendor risk team
  • D. Provide vendor direct access to update and respond to Issues

Answer: A,D


NEW QUESTION # 39
In order to evaluate a vendor on a recurring basis, configure a record in this table:

  • A. Repeating Assessments
  • B. Assessment Metric Type
  • C. Repeating Surveys
  • D. Assessment Metric

Answer: A


NEW QUESTION # 40
The assessment page provides an area to import what kind of a completed questionnaire?

  • A. SOX
  • B. GDPR
  • C. SIG
  • D. SOC1 & SOC2

Answer: A


NEW QUESTION # 41
What are some of the purposes of a Vendor Risk Issue? (Choose two.)

  • A. Indicate vendors that need further assessment
  • B. Log access-related incidents for the vendor portal
  • C. Accept risks identified in the assessment
  • D. Track remediation of compliance gaps

Answer: A,D


NEW QUESTION # 42
Internal roles include: (Choose three.)

  • A. Vendor Risk Manager sn_vdr_risk_asmt.vendor_risk_manager
  • B. Vendor Risk Reviewer sn_vdr_risk_asmt.vendor_assessment_reviewer
  • C. Vendor Contact sn_vdr_risk.vendor_contact
  • D. Primary Vendor Contact sn_vdr_risk_asmt.prim_vendor_contact
  • E. Vendor Risk Assessor sn_vdr_risk_asmt.vendor_assessor

Answer: A,B,E


NEW QUESTION # 43
......

CIS-VRM dumps review - Professional Quiz Study Materials: https://www.testinsides.top/CIS-VRM-dumps-review.html