ServiceNow CIS Security Operations Practice Test

80 preguntas disponibles

Gana confianza para ServiceNow CIS Security Operations. Practica los conceptos, comprende las respuestas y refuerza tus conocimientos pregunta a pregunta.

Probar una pregunta
Examen de certificación
60 Preguntas del examen
1 hora 30 minutos Límite de Tiempo
Tu práctica
80 Preguntas de práctica
1 hora 20 minutos Tiempo de Práctica
El listón a superar 70 Puntuación mínima publicada para obtener esta certificación.
Objetivos oficiales de ServiceNow
ServiceNow80 preguntas de práctica
Temario verificadoVerificado con ServiceNow official objectivesMetadatos verificados 2026-06-08Cómo verificamos

Descripción y detalles del examen

The Certified Implementation Specialist - Security Operations (CIS - Security Operations) certification validates an individual's expertise in implementing, configuring, and managing ServiceNow's Security Operations suite. This credential demonstrates comprehensive proficiency across five core domains: Security Event Management (SEM), Security Incident Response (SIR), Security Operations Dashboard and Reporting, Threat Intelligence, and Vulnerability Response. Earning this certification signifies the ability to integrate disparate security tools, automate response workflows, and provide a unified operational view for a Security Operations Center (SOC). It confirms the holder's skills in translating business security requirements into effective ServiceNow configurations, enabling organizations to reduce mean time to detect (MTTD) and mean time to respond (MTTR) to security threats. In an era of escalating cyber threats, this certification positions professionals as critical assets capable of orchestrating complex security processes on a leading enterprise platform.

Preguntas de Muestra

Elige una respuesta y consulta la explicación para ver cómo funciona la práctica.

Vulnerability Response

During a ServiceNow Security Operations implementation for a healthcare network on the Washington DC family, scanner imports create thousands of unmatched findings because hostnames include short names, FQDNs, and cloud instance IDs inconsistently. The environment includes clinical application owners, emergency change windows, and privacy review before broad disclosure. The implementation team is asked not to customize base tables during the pilot. Which implementation choice best satisfies the requirement while staying aligned to the exam blueprint?

Explicación:

La calidad de los datos de VR depende de la mapeo de los identificadores de origen a los CI del CMDB donde sea posible. La distractor más plausible (Crear nuevos CI automáticamente para cada hostname sin coincidencia) es incorrecto porque crear nuevos CI es la respuesta tentadora incorrecta porque llena una referencia pero puede contaminar el CMDB; debilitaría la trazabilidad, duplicaría registros o saltaría el flujo de trabajo de SecOps configurado.

Risk Calculations and Post Incident Response

During a ServiceNow Security Operations implementation for a regional bank on the Xanadu family, closed high-impact incidents have no root cause narrative, improvement action, or lesson-learned evidence for auditors. The environment includes payment CIs, a frozen change calendar, and a regulator who wants reproducible evidence. An unrelated CMDB cleanup is running in parallel and cannot delay the SecOps release. Which implementation choice best satisfies the requirement while staying aligned to the exam blueprint?

Security Incident Response

During a ServiceNow Security Operations implementation for a regional bank on the Xanadu family, open investigations must be grouped by attack phase, assignment group, business service, and containment state with drill-down to the live records. The environment includes payment CIs, a frozen change calendar, and a regulator who wants reproducible evidence. The project sponsor also asks whether the dashboard color palette can match the SOC wallboard. Which implementation choice best satisfies the requirement while staying aligned to the exam blueprint?

Security Incident Response

During a ServiceNow Security Operations implementation for a university SOC on the Yokohama family, a customer wants tags such as legal-hold, executive-visible, and threat-hunting to support queues, dashboards, and special handling. The environment includes student-owned devices, shared lab networks, and a dean asking for trend reporting. The implementation team is asked not to customize base tables during the pilot. Which implementation choice best satisfies the requirement while staying aligned to the exam blueprint?

Vulnerability Response

During a ServiceNow Security Operations implementation for a global manufacturer on the Washington DC family, the security team needs one workflow for infrastructure CVEs, one for vulnerable application libraries, and one for container image findings. The environment includes plant-floor CIs, outsourced scanner operations, and a local team that still uses email approvals. The project sponsor also asks whether the dashboard color palette can match the SOC wallboard. Which implementation choice best satisfies the requirement while staying aligned to the exam blueprint?

Explicación:

La familia VR incluye módulos para flujos de trabajo de vulnerabilidades de infraestructura, aplicación y contenedores. La distractor más plausible (Coloque todas las hallazgas en la respuesta de incidentes de seguridad porque cada CVE es un incidente) está equivocada porque colocar cada CVE en SIR está equivocada porque confunde la remediación de vulnerabilidades con la respuesta activa a incidentes; debilitaría la trazabilidad, duplicaría registros o saltaría el flujo de trabajo de SecOps configurado.

Oportunidades profesionales y salario

Salario medio: $129,180mercado de EE. UU.– Information Security Analysts

Fuente: BLS Occupational Employment and Wage Statistics, May 2025 -- Information Security Analysts (SOC 15-1212), US national. Occupation median, not a certification salary. (2025)

Information Security Analysts

Los rangos son cifras del mercado de EE. UU. salvo que se muestre un rango local.

Qué temas cubre este examen

01Security Incident Response

02Security Integrations

03Threat Intelligence

04Vulnerability Response

Detalles del Examen CIS-SIR | $150 USD | 1 hora 30 minutos

Código del Examen CIS-SIR
Proveedor ServiceNow
Costo del Examen $150 USD
Puntaje Mínimo 70
Límite de Tiempo 1 hora 30 minutos
Preguntas del examen 60
Tipos de PreguntasAún no disponible en este idioma
Política de Repetición 7-day waiting period after first failed attempt. Full exam fee required for retake. Certifications must be maintained via delta exams after each major release.
Formato del Examen Linear
Supervisión en Línea Disponible
Disponible En
English

Preguntas Frecuentes

¿Cuáles son los requisitos previos para presentar el examen CIS - Security Operations?

¿En qué se diferencia esta certificación de las certificaciones generales de ciberseguridad como CISSP o Security+?

¿Cuál es el formato y la estructura típicos del examen?

¿Qué trayectorias profesionales se ven más mejoradas por esta certificación?

¿Cómo debo prepararme para el examen más allá del curso obligatorio?