Question 116

From a system authorization perspective, why are potential system software patches tested prior to deployment?
Response:
  • Question 117

    Statements of security capability to: (i) build in additional, but related, functionality to a security control; and/or (ii) increase the strength of the control.
    Response:
  • Question 118

    Any information about an individual maintained by an agency, including (1) any information that can be used to distinguish or trace an individual's identity, such as name, social security number, date and place of birth, mother's maiden name, or biometric records; and (2) any other information that is linked or linkable to an individual, such as medical, educational, financial, and employment information.
    Response:
  • Question 119

    Which of the following details best define an independent assessor? Response:
  • Question 120

    Security controls that can support multiple information systems efficiently and effectively as a common capability.
    Their implementation results in a security capability that is inheritable by multiple information systems; such as Network boundary defense, management constraints, personnel security, security of physical structures, etc..
    Response: