Free CIS-VR Exam Braindumps (page: 6)

Page 5 of 16

Which of the following provides a list of software weaknesses?

  1. Third Party Entries
  2. NVD
  3. CWE
  4. Vulnerable Items

Answer(s): C


Reference:

https://docs.servicenow.com/bundle/newyork-security-management/page/product/vulnerability-response/task/view-vuln-libraries.html



Filter Groups provide a way to:

  1. Decouple the use of the grouping from the definition of the grouping
  2. Build criteria once
  3. Reuse criteria in a variety of places
  4. All of the above

Answer(s): B



Which module within the Vulnerability Response application could be used to get information from the National Vulnerability Database (NVD) at any moment?

  1. On-Demand Update
  2. NVD Auto-Update
  3. Vulnerable Software
  4. NVD Patch

Answer(s): B


Reference:

https://docs.servicenow.com/bundle/orlando-security-management/page/product/vulnerability-response/concept/c_NVDAndCWEDataImport.html#c_NVDAndCWEDataImport



Which statement about patching is most correct?

  1. Mature organizations abandon patching
  2. Patch management and Vulnerability Response are interchangeable terms
  3. Patching is one of many responses to a Vulnerability
  4. As long as you are patching actively, Vulnerability Response isn’t necessary

Answer(s): C






Post your Comments and Discuss ServiceNow® CIS-VR exam with other Community members:

CIS-VR Discussions & Posts