When reviewing the Control Objective Table form with your customer, what are the most common choice lists to be configured? (Choose three.)
When reviewing the Control Objective Table form with your customer, what are the most common choice lists to be configured? (Choose three.)A . Reference B. Classification C. Category D. Type E. DescriptionView AnswerAnswer: B,C,D
What is the minimum role required to create a risk assessment methodology (RAM)?
What is the minimum role required to create a risk assessment methodology (RAM)?A . sn_compliance.admin B. sn_risk.user C. sn_risk.manager D. sn_risk.adminView AnswerAnswer: C
Common controls from UCF import into which table in ServiceNow?
Common controls from UCF import into which table in ServiceNow?A . sn_compliance_policy B. sn_compliance_policy_statement C. sn_compliance_policy_exception D. sn_complilance_authority_documentView AnswerAnswer: C
What are some of the baseline tables commonly leveraged in Entity filters? (Choose three.)
What are some of the baseline tables commonly leveraged in Entity filters? (Choose three.)A . Company [core_company] B. Services [cmdb_ci_service] C. Location [cmn_location] D. Risk [sn_risk_risk] E. Audit Engagement [sn_audit_engagement]View AnswerAnswer: A,B,D
For classic risk assessment, indicator failure factor represents the impact of risk indicator failures on what score?
For classic risk assessment, indicator failure factor represents the impact of risk indicator failures on what score?A . Inherent ALE B. Calculated ALE C. Residual ALE D. Inherent SLEView AnswerAnswer: A,B
Which of the following relationship sets are considered a many-to-many relationship? (Choose three.)
Which of the following relationship sets are considered a many-to-many relationship? (Choose three.)A . Entity Type and Entity Class B. Indicator Template and Entity Type C. Control and Risk D. Control Objective and Entity Type E. Entity Type and EntityView AnswerAnswer: A,B,E
What table extends from Document Table?
What table extends from Document Table?A . Risk B. Risk Framework C. Risk Response Task D. Risk StatementView AnswerAnswer: A
Which of the following statements is true of a Risk Response task?
Which of the following statements is true of a Risk Response task?A . Only one Risk Response task can be related to a Risk at a time B. Only users with the risk_manager role or higher can be assigned to a Risk Response task C. The risk admin role is...
How are all of these components linked together?
The SOX content pack includes a series of policies, control, risks. How are all of these components linked together?A . Mapping File B. Manually C. Automatically D. Batch importView AnswerAnswer: C
Which table extends from the Content Table?
Which table extends from the Content Table?A . Risk Record B. Risk Framework C. Risk Response Task D. Risk StatementView AnswerAnswer: D