CIS-RC Exam QuestionsBrowse all questions from this exam

CIS-RC Exam - Question 25


Who can move a Policy into Review? (Choose two.)

Show Answer
Correct Answer: AD

A Policy can be moved into review by a sys admin or the policy owner. The sys admin role has overarching permissions, allowing them to perform actions across different modules, including compliance and policy management. The policy owner, being responsible for the policy, has the necessary authority to move it into review. Therefore, both the sys admin and policy owner are correctly positioned to perform this action.

Discussion

15 comments
Sign in to comment
Livut
Mar 1, 2024

Please look at P153, San diego version. A user must have the compliance manager role, be listed as the policy owner or be a member of the Policy owning group. The admin role can also make this move. Tested in my PDI as well, you can try it too as a sys_admin. The correct answer is A and D

Street_SmartOptions: BD
Oct 21, 2023

B and D: Policy review and Policy approver Reference: ebook GRC:IRM Implementation pages 154

HoneybadgeOptions: BD
Dec 4, 2023

Policy lifecycle Authoring, ebook GRC: IRM Implementation pages 154 B and D are correct

Maha200121
May 3, 2024

AD is correct

Oana25Options: AD
Oct 1, 2024

Page 111 in the pdf book says policy owner, there is no mention about policy approver to be able to move it to Review state.

kilkotOptions: BD
Oct 27, 2023

Policy lifecycle Authoring, ebook GRC: IRM Implementation pages 154 B and D are correct

ssaurabhpanedy
Jul 3, 2024

AD should be the answer as per Page 153 - A user must have the compliance manager role, be listed as the policy owner or be a member of the Policy owning group. The admin role can also make this move.

Ulumenium
Jul 25, 2023

Normally sn_compliance.user to move policies into review but this question is about Policy lifecycke Authoring. so, the correct answers is B and D: Policy review and Policy approver Reference: ebook GRC:IRM Implementation pages 154

_Gudia_Options: BC
Sep 12, 2023

compliance user and above can create policy and move policy into review.

ToniaITOptions: AD
Oct 21, 2024

A and D are the correct answers. PDF book states "To move the policy into the Review state, the a user must have the sn_compliance.manager role, be listed as the Policy Owner or be a member of the Policy Owning group. The admin role can also make this move.". I have also checked the related UI action conditions.

thj_buymaOptions: AD
Feb 14, 2025

To move the policy into the Review state, a user must have the sn_compliance.manager role, be listed as the Policy Owner or be a member of the Policy Owning group.The admin role can also make this move.

PurushothamanDOptions: AD
Feb 24, 2025

Only SYS ADMIN and POLICY OWNER (or anyone from OWNING GROUP) have access to move the policy to Review state. Note: The POLICY OWNER will submit a policy for review after populating the POLICY APPROVERS and REVIEWERS.

esllinOption: A
Jan 5, 2023

compliance user and above can create policy and move policy into review.

sepherethOptions: BD
Sep 14, 2024

Answer: B. policy approver D. policy owner Explanation: i feel like this is a GRC process question rather then a GRC module tehcnical question, sys admin should be able to do it, but those 2 roles (B, D) are usually responsible for overseeing and managing the policy lifecycle, including the review process. Source: trust me bro.

xheniinehxOptions: AD
Feb 3, 2025

A- sys_admin D- policy owner Policy reviewer will take actions once the Policy is in "Review" state, and Policy approver in the "Awaiting Approval" state.