Certified Implementation Specialist - Vulnerability Response

Here you have the best ServiceNow CIS-VR practice exam questions

  • You have 31 total questions to study from
  • Each page has 5 questions, making a total of 7 pages
  • You can navigate through the pages using the buttons at the bottom
  • This questions were last updated on May 23, 2025
  • This site is not affiliated with or endorsed by ServiceNow.
Question 1 of 31

Select the three components of a Filter Condition: (Choose three.)

    Correct Answer: A, C, D

    The three components of a Filter Condition are Field, Operator, and Value. The Field specifies the attribute of the data being evaluated, the Operator defines the relationship between the Field and the Value, and the Value is the specific criteria against which the Field is compared. Sum is not a component of a filter condition.

Question 2 of 31

What is the minimum role required to create and change Service Level Agreements for Vulnerability Response groups?

    Correct Answer: D

    The minimum role required to create and change Service Level Agreements for Vulnerability Response groups is 'sn_vul.admin'. This role specifically pertains to the management and administrative tasks within the Vulnerability Response module, which includes the ability to handle SLAs.

Question 3 of 31

Changes made within a named Update Set in a different application scope:

    Correct Answer: C

    Changes made within a named Update Set in a different application scope will not be captured. An update set only captures changes made within the same application scope and cannot capture changes that cross different scopes. This ensures that each application scope remains isolated from others, maintaining the integrity of the application.

Question 4 of 31

In regard to the Security Operations Process, which of the following statements defines the “Identify” phase?

    Correct Answer: A

    The 'Identify' phase in the Security Operations Process is about recognizing what processes and assets need protection. Identifying critical assets, understanding the business context, and determining the risk associated with those assets are key activities of this phase.

Question 5 of 31

Which module is used to adjust the frequency in which CVEs are updated?

    Correct Answer: A

    The correct module used to adjust the frequency at which CVEs (Common Vulnerabilities and Exposures) are updated is the NVD Auto-update. This module allows for automated updates of CVE information from the National Vulnerability Database, ensuring that vulnerability data remains current and accurate.