CIS-TPRM Practice Questions
Certified Implementation Specialist - Third-Party Risk Management
60 practice questions across 6 topics • 15 free
Exam Overview
Practice Questions
60 questions from 6 topicsWhat is the primary purpose of the Third-party Risk Management (TPRM) application in ServiceNow?
👆 Click an option above to select your answer
Which of the following are key capabilities of the Third-party Risk Management application? (Choose THREE)
👆 Click an option above to select your answer
Which user role is responsible for leading thorough risk assessments of third parties and developing mitigation strategies?
👆 Click an option above to select your answer
Which role is required to configure TPRM properties?
👆 Click an option above to select your answer
Which applications must be activated to fully implement TPRM? (Choose THREE)
👆 Click an option above to select your answer
What is the purpose of the 'Organization name' property [sn_vdr_risk_asmt.company.name] in TPRM?
👆 Click an option above to select your answer
Which role is required to create an external assessment in TPRM?
👆 Click an option above to select your answer
What is the purpose of a question bank in TPRM?
👆 Click an option above to select your answer
Which of the following can be associated with an external assessment? (Choose THREE)
👆 Click an option above to select your answer
What is the primary purpose of the Third-party portal in TPRM?
👆 Click an option above to select your answer
Which of the following tasks can third-party contacts perform through the Third-party portal? (Choose THREE)
👆 Click an option above to select your answer
What is the purpose of third-party elements in TPRM?
👆 Click an option above to select your answer
Which roles can monitor third-party risk using the Vendor Management Workspace? (Choose THREE)
👆 Click an option above to select your answer
What happens when TPRM is integrated with GRC: Policy and Compliance Management?
👆 Click an option above to select your answer
Which risk intelligence provider integrations are supported by ServiceNow for TPRM? (Choose TWO)
👆 Click an option above to select your answer
Practice by Topic
Focus on specific areas to strengthen your weak points
Exam Domains
Third-party Risk Management Fundamentals
23%TPRM overview, key capabilities, user roles (Risk Manager, Assessors, Admins, Contract Negotiators), due diligence types (Information Security, Financial, Legal, Operational, Compliance, Reputation), risk profiles, engagement types, and the due diligence workflow
Core Configuration
14%Application activation, TPRM properties configuration, role assignment, user group management, authentication policies, email communication setup, and data import from other systems
Assessment Configuration
33%External assessments, internal assessments (IRQ), questionnaire templates, document request templates, question banks, Smart Assessment Engine (SAE), template migration, scoring rules, event-driven management, and control objectives
Third-party Portal
12%Portal overview, third-party contact management, task delegation, questionnaire response formats (Excel, SIG), progress tracking, and portal access configuration
Third-party Supporting Processes
12%Third-party elements, element collection process, entity generation, engagement assignment, monitoring third-party risk, and Vendor Management Workspace
Other Application Relationships
6%Integration with GRC Policy and Compliance Management, risk intelligence provider integrations (EcoVadis, SIG, BitSight, Security Scorecard), provider-based submission rules, and ESG integrations
More Study Resources
Explore additional materials to boost your exam preparation