CIS-ITSM Change Management Practice Question
A change manager notices that the risk assessment questionnaire is not generating a risk value when a Normal Change record is saved. Upon investigation, the administrator finds that the Risk Assessment UI Action is missing from the form. What is the most likely cause of this behavior?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The Change Risk Assessment plugin is active, but the matching Metric Type record conditions do not evaluate to true for the current change record.
Risk assessment criteria and calculations are tied to Risk Assessment rules (asmt_metric_type and associated conditions). If the change state is outside the allowed assessment state or the conditions on the risk assessment definition are not met, the assessment UI action or automatic calculation will not trigger.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The user lacks the 'itil' role required to view the assessment related list on the change form layout.
Why it's wrong here
Lack of role would cause permission errors, not complete omission of the assessment trigger functionality governed by metric types.
- ✗
The Change Management - State Model core plugin has been deactivated, disabling all assessment logic.
Why it's wrong here
Deactivating the core state model breaks the entire change lifecycle, not just risk assessments.
- ✓
The Change Risk Assessment plugin is active, but the matching Metric Type record conditions do not evaluate to true for the current change record.
Why this is correct
Risk assessment trigger conditions are evaluated against the change record; if no metric type matches the criteria, assessments are not initiated or displayed.
- ✗
The change record is currently in the Review state, and risk assessments are restricted from running post-implementation.
Why it's wrong here
While assessments are typically done before implementation, the UI action visibility and calculation are controlled by business rules and risk condition definitions.
About these practice questions
This CIS-ITSM question is part of Courseiva's 500-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed August 2026 · checked against the official ServiceNow exam blueprint
This CIS-ITSM practice question is part of Courseiva's free ServiceNow certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CIS-ITSM exam.