Weekend Sale Special 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exams65

Certified Implementation Specialist - Security Incident Response Exam Question and Answers

Certified Implementation Specialist - Security Incident Response Exam

Last Update May 11, 2024
Total Questions : 60

We are offering FREE CIS-SIR ServiceNow exam questions. All you do is to just go and sign up. Give your details, prepare CIS-SIR free exam questions and then go for complete pool of Certified Implementation Specialist - Security Incident Response Exam test questions that will help you more.

CIS-SIR pdf

CIS-SIR PDF

$35  $99.99
CIS-SIR Engine

CIS-SIR Testing Engine

$42  $119.99
CIS-SIR PDF + Engine

CIS-SIR PDF + Testing Engine

$56  $159.99
Questions 1

If the customer’s email server currently has an account setup to report suspicious emails, then what happens next?

Options:

A.  

an integration added to Exchange keeps the ServiceNow platform in sync

B.  

the ServiceNow platform ensures that parsing and analysis takes place on their mail server

C.  

the customer’s systems are already handling suspicious emails

D.  

the customer should set up a rule to forward these mails onto the ServiceNow platform

Discussion 0
Questions 2

What specific role is required in order to use the REST API Explorer?

Options:

A.  

admin

B.  

sn_si.admin

C.  

rest_api_explorer

D.  

security_admin

Discussion 0
Questions 3

To configure Security Incident Escalations, you need the following role(s):.

Options:

A.  

sn_si.admin

B.  

sn_si.admin or sn_si.manager

C.  

sn_si.admin or sn_si.ciso

D.  

sn_si.manager or sn_si.analyst

Discussion 0
Questions 4

What is the purpose of Calculator Groups as opposed to Calculators?

Options:

A.  

To provide metadata about the calculators

B.  

To allow the agent to select which calculator they want to execute

C.  

To set the condition for all calculators to run

D.  

To ensure one at maximum will run per group

Discussion 0
Questions 5

In order to see the Actions in Flow Designer for Security Incident, what plugin must be activated?

Options:

A.  

Performance Analytics for Security Incident Response

B.  

Security Spoke

C.  

Security Operations Spoke

D.  

Security Incident Spoke

Discussion 0
Questions 6

A Post Incident Review can contain which of the following? (Choose three.)

Options:

A.  

Post incident QUESTION NO:naires

B.  

An audit trail

C.  

Attachments associated with the security incident

D.  

Key incident fields

E.  

Performance Analytics reports

Discussion 0
Questions 7

What is calculated as an arithmetic mean taking into consideration different values in the CI, Security Incident, and User records?

Options:

A.  

Priority

B.  

Business Impact

C.  

Severity

D.  

Risk Score

Discussion 0
Questions 8

Which of the following State Flows are provided for Security Incidents? (Choose three.)

Options:

A.  

NIST Open

B.  

SANS Open

C.  

NIST Stateful

D.  

SANS Stateful

Discussion 0
Questions 9

Why should discussions focus with the end in mind?

Options:

A.  

To understand desired outcomes

B.  

To understand current posture

C.  

To understand customer’s process

D.  

To understand required tools

Discussion 0