In which state can reviewers either send the Policy back to draft or forward it by requesting approval?
A. Retired
B. Published
C. Awaiting Approval
D. Review
What would you leverage in order to provide users with an alternate user experience to view policies, create policy exceptions, and search for controls?
A. Help Desk Portal
B. Catalog Portal
C. Access Portal
D. Service Portal
There is a direct relationship between Entity Class and Entity Type when:
A. They have the same Entity Types
B. There is no direct relationship
C. They have the same Entities
D. They leverage the same reporting
GRC Options in Interactive Filters are only available through which feature?
A. GRC Filtering
B. Metrics Reporting
C. Performance Analytics
D. Trending Analytics
Which of the following statements is true of a Risk Response task?
A. Only one Risk Response task can be related to a Risk at a time
B. Only users with the risk_manager role or higher can be assigned to a Risk Response task
C. The risk admin role is required to assign the Risk Response task
D. The Risk Response task is automatically progressed through the states using a worflow
What type of customers may you encounter? (Choose three.)
A. Organization recently acquired and had some bad audit findings (using ServiceNow GRC to help restart their process)
B. Organization with little to nothing in place already (implementing one or more core ServiceNow GRC applications)
C. Organization undergoing a full GRC transformation (implementing all three core ServiceNow GRC applications at once or in a phased approach)
D. Organization implementing ServiceNow GRC to help ease their Customer Service organization (using other tools to manage other processes)
E. Organization implementing ServiceNow GRC to help ease their Help Desk organization (using other tools to manage other processes)
The Risk thresholds in the Risk Criteria Matrix (default values) do not line up with company needs. What should you do?
A. Configure the Risk Criteria in ServiceNow
B. Identify Risk that will benefit from the default values
C. Demonstrate Risk scoring scenarios using the default values
D. Use the default values to determine new company approach
The SOX content pack includes a series of policies, control, risks. How are all of these components linked together?
A. Mapping File
B. Manually
C. Automatically
D. Batch import
Which tables extend the Content (sn_grc_content) table? (Choose two.)
A. sn_compliance_citation
B. sn_grc_issue
C. sn_compliance_policy_statement
D. sn_risk_risk
Which role is not part of ServiceNow GRC?
A. Risk User
B. Risk Developer
C. Risk Manager
D. Risk Reader