Free CIS-SIR Exam Braindumps (page: 4)

Page 3 of 16

What is the fastest way for security incident administrators to remove unwanted widgets from the Security Incident Catalog?

  1. Clicking the X on the top right corner
  2. Talking to the system administrator
  3. Can't be removed
  4. Through the Catalog Definition record

Answer(s): D



Select the one capability that retrieves a list of running processes on a CI from a host or endpoint.

  1. Get Network Statistics
  2. Isolate Host
  3. Get Running Processes
  4. Publish Watchlist
  5. Block Action
  6. Sightings Search

Answer(s): C


Reference:

https://docs.servicenow.com/bundle/quebec-security-management/page/product/security-operations-common/concept/get-running-processes-capability.html



Which Table would be commonly used for Security Incident Response?

  1. sysapproval_approver
  2. sec_ops_incident
  3. cmdb_rel_ci
  4. sn_si_incident

Answer(s): D


Reference:

https://docs.servicenow.com/bundle/quebec-security-management/page/product/security-incident-response/reference/installed-with-sir.html



There are several methods in which security incidents can be raised, which broadly fit into one of these categories: _________. (Choose two.)

  1. Integrations
  2. Manually created
  3. Automatically created
  4. Email parsing

Answer(s): B,C


Reference:

https://docs.servicenow.com/bundle/paris-security-management/page/product/security-incident-response/concept/si-creation.html






Post your Comments and Discuss ServiceNow® CIS-SIR exam with other Community members:

CIS-SIR Exam Discussions & Posts