ServiceNow Certified Implementation Specialist – Vendor Risk Management — Question 24
What is the advantage of using both VRM and GRC/IRM?
Answer options
- A. Vendor Risk engagements automatically match with Audit engagements
- B. All compliance controls are automatically visible to the vendor risk manage
- C. Primary vendor contacts can then see their overall non compliant risk score
- D. Non compliant controls automatically adjust the risk score for a vendor entity
Correct answer: D
Explanation
The correct answer is D because non-compliant controls directly influence the risk score assigned to a vendor entity, reflecting the true risk level. Options A, B, and C do not capture the essential relationship between non-compliance and risk scoring, making them less relevant in the context of risk assessment.