Entity Scoping 25% Flashcards

1
Q
  • The Entity filter record requires which mandatory field to be completed?
    a. Filter Date
    b. Filter name
    c. Conditions
    d. Table
A

d. Table

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

The Control Objective is ServiceNow is often called what by people in the GRC industry? (select all that apply)

a. Risk template
b. Control objective
c. Requirement
d. Control template

A

b. Control objective
c. Requirement
d. Control template

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q
  • An Entity must be related to a record in a ServiceNow table.​
    a. True
    b. False
A

b. False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How many Entity Types can an Entity belong to? (select all that apply)

a. none
b. one
c. multiple
d. none - because an entity is not related to an entity type

A

a. none
b. one
c. multiple

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q
  • If an Entity Type has 5 Entities related to it, then when that Entity Type is related to a Control Objective, 5 Controls will ALWAYS be generated
    a. True
    b. False
A

b. False

If the “Create controls automatically” box is not checked, then controls will not be generated.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
  • What tables are frequently used on the Entity Type filter to generate Entities?
    a. Department
    b. Group
    c. Control
    d. Indicator
    e. Service
A

a. Department
b. Group
e. Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

The Entity Owner is derived from the “Managed By” field on the Service record for the Entity Type “Critical Service.”​ If the value changes on the Service record, it will not update on the GRC Entity.​

a. True
b. False

A

a. True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

The “Business Unit” Entity Type leverages the Department table to generate Entities. There are only 4 records in this table when the Entity Type is first set up. What happens when later a 5th record is created in the Department table?​

a. No updates are made to the entities
b. A new Entity is created for the new record
c. A notification is sent to the Compliance Manager

A

b. A new Entity is created for the new record

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
  • Which tables extend from the Document parent table?
    a. Risk Framework
    b. Risk Statement
    c. Risk
    d. Policy
    e. Control Objective
    d. Control
    e. Authority Document
    f. Citation
A

a. Risk Framework
d. Policy
e. Authority Document

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q
  • Which tables extend from the Content parent table?
    a. Risk Framework
    b. Risk Statement
    c. Risk
    d. Policy
    e. Control Objective
    d. Control
    e. Authority Document
    f. Citation
A

b. Risk Statement
e. Control Objective
f. Citation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q
  • Which tables extend from the Item parent table?
    a. Risk Framework
    b. Risk Statement
    c. Risk
    d. Policy
    e. Control Objective
    d. Control
    e. Authority Document
    f. Citation
A

c. Risk

d. Control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q
  • Which of the following tables are in the GRC: Risk scope? (Select all that apply)
    a. Issue
    b. Risk Framework
    c. Risk Statement
    d. Citation
A

b. Risk Framework

c. Risk Statement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q
  • Which of the following tables are in the GRC: Policy and Compliance Scope? (Select all that apply)
    a. Issue
    b. Control
    c. Risk
    d. Citation
A

b. Control

d. Citation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which of the following are scoped applications in GRC? (Select all that apply)

a. GRC: Profiles
b. GRC: Risk Management
c. Compliance and Audit Management
d. Global

A

a. GRC Profiles (Entities used to be called Profiles)

b. GRC: Risk Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which of the following IS NOT a table in the Policy and Compliance scope?

a. Policy
b. Authority Document
c. Issue
d. Control

A

c. Issue sn_grc_ issue

Remember to consider the scope:
sn_compliance_policy
sn_compliance_authority_document
sn_compliance_control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

The GRC Workbench can be used to build the relationships between Entity Classes.

a. Yes
b. No

A

a. Yes

17
Q

Entity Classes are used to create upstream and downstream relationships for Entities.

a. Yes
b. No

A

a. Yes