Question 1

What kind of approach does BRM provides?
Response:
  • Question 2

    The official primarily responsibility for security of an Info System; who establishes sensitivity level and types of controls required to protect the IS and initiates system authorization activities.
    Response:
  • Question 3

    A discrete set of resources organized for the collection, processing, maintenance, or disposition of information best describes one of the following Response:
  • Question 4

    The transfer of risk is one of the five risk treatment methods pointed out in NIST 800-37 Rev 2.
    Choose an example of risk transfer from the following options.
    Response:
  • Question 5

    Testing must include an assessment of the _____________ as described in the system security plan, as recorded in the risk assessment, and reflected in the accreditation boundary; all should be the same.
    Response: