ACAS (ASSURED COMPLIANCE
ASSESSMENT SOLUTION) QUESTIONS
AND CORRECT ANSWERS
ACASA2(AssuredA2ComplianceA2AssessmentA2Solution)A2-A2Ans--isA2aA2network-
basedA2securityA2complianceA2andA2assessmentA2capabilityA2designedA2toA2provideA2awa
renessA2ofA2theA2securityA2postureA2andA2networkA2healthA2ofA2DoDA2networks
SecurityCenterA2-A2Ans--
isA2theA2centralA2consoleA2forA2theA2ACASA2systemA2toolsA2andA2data
ACASA2componentsA2-A2Ans--SecurityCenter
Nessus-A2activeA2scanner
PVSA2(passiveA2vulnerabilityA2scanner)A2-A2sniffsA2theA2network
3DA2tool/optionalA2-A2portA2443
ACASA2componentsA2performA2theseA2mainA2functions:A2-A2Ans---A2DiscoverA2assets
-A2DetectA2vulnerabilitiesA2andA2dataA2leaks
-A2ConductA2configurationA2andA2complianceA2audits
-A2PublishA2findingsA2toA2ContinuousA2MonitoringA2andA2RiskA2ScoringA2(CMRS)
Plug-inA2-A2Ans--displaysA2aA2listA2ofA2scriptA2filesA2usedA2byA2Nessus/
PVSA2scannersA2toA2collectA2andA2interpretA2vulnerability,A2compliance,A2andA2configurati
onA2data
ThingsA2thatA2canA2beA2scannedA2forA2securityA2dataA2-A2Ans--
servers,A2workstations,A2peripherals,A2MobileA2deviceA2ManagementA2Servers,A2networkA
2servers
PVSA2(PassiveA2VulnerabilityA2Scanner)A2-A2Ans--
watchesA2andA2determinesA2vulnerabilitiesA2basedA2onA2networkA2traffic,A2insteadA2ofA2act
ivelyA2scanning
ComplianceA2-A2Ans--
aA2stateA2ofA2beingA2inA2accordanceA2withA2establishedA2guidelines,A2specificationsA2orA2l
egislation,A2orA2theA2processA2ofA2becomingA2so
CMRSA2(A2ContinuousA2MonitoringA2andA2RiskA2Scoring)A2-A2Ans--
aA2toolA2toA2provideA2DoDA2componentA2-A2andA2enterprise-
levelA2situationalA2awarenessA2byA2quantitativelyA2displayingA2anA2organization'sA2securit
yA2posture
TaskA2OrderA213-670A2-A2Ans--ImplementationA2ofA2ACAS
, WhatA2isA2theA21stA2screenA2youA2seeA2whenA2youA2logA2inA2toA2SecurityCenter?A2-A2Ans--
Dashboard
SecurityCenterA2BuildingA2BlocksA2-A2Ans---Organization
-Role,A2Group,A2andA2UserA2Definition
-ScanA2ZoneA2(andA2NessusA2Scanners)
-Repository
-Plugin
OrganizationA2-A2Ans--
groupsA2ofA2individualsA2responsibleA2forA2aA2setA2ofA2commonA2assets
ScanA2ZonesA2-A2Ans--
aA2definedA2staticA2rangeA2ofA2IPA2addressesA2thatA2canA2beA2scannedA2byA2oneA2orA2mor
eA2NessusA2Scanners
RepositoriesA2-A2Ans--
areA2proprietaryA2dataA2files,A2residingA2onA2theA2SecurityA2Center,A2thatA2storeA2scanA2re
sults
PassiveA2scanningA2pluginsA2RangeA2-A2Ans--1-10,000
ActiveA2(Nessus)A2pluginA2RangeA2-A2Ans--10,001-900,000
CustomA2pluginsA2createdA2byA2usersA2RangeA2-A2Ans--900,001-999,999
ComplianceA2pluginA2RangeA2-A2Ans--1,000,000+
WhatA2isA2theA2maximumA2sizeA2ofA2aA2SecurityCenterA25A2Repository?A2-A2Ans--32GB
HowA2canA2youA2getA2yourA2SecurityCenterA2pluginA2updates?A2-A2Ans--
AutomaticallyA2fromA2DISA'sA2pluginA2serverA2andA2manuallyA2fromA2theA2DoDA2PatchA2R
epository
AA2ScanA2JobA2incorporatesA2-A2Ans--
Policy,A2schedule,A2Credentials,A2ImportA2Repository,A2Targets,A2andA2ScanA2Zone
StepsA2toA2runA2aA2ScanA2withA2SecurityCenterA25A2-A2Ans--1.A2CreateA2aA2ScanA2Policy
2.A2CreateA2aA2Scan
3.A2LaunchA2theA2Scan
4.A2ViewA2theA2ScanA2Results
CredentialsA2-A2Ans--
administrativeA2levelA2usernamesA2andA2passwordsA2(orA2SSHA2keypairs)A2thatA2areA2use
dA2inA2authenticatedA2scans
ASSESSMENT SOLUTION) QUESTIONS
AND CORRECT ANSWERS
ACASA2(AssuredA2ComplianceA2AssessmentA2Solution)A2-A2Ans--isA2aA2network-
basedA2securityA2complianceA2andA2assessmentA2capabilityA2designedA2toA2provideA2awa
renessA2ofA2theA2securityA2postureA2andA2networkA2healthA2ofA2DoDA2networks
SecurityCenterA2-A2Ans--
isA2theA2centralA2consoleA2forA2theA2ACASA2systemA2toolsA2andA2data
ACASA2componentsA2-A2Ans--SecurityCenter
Nessus-A2activeA2scanner
PVSA2(passiveA2vulnerabilityA2scanner)A2-A2sniffsA2theA2network
3DA2tool/optionalA2-A2portA2443
ACASA2componentsA2performA2theseA2mainA2functions:A2-A2Ans---A2DiscoverA2assets
-A2DetectA2vulnerabilitiesA2andA2dataA2leaks
-A2ConductA2configurationA2andA2complianceA2audits
-A2PublishA2findingsA2toA2ContinuousA2MonitoringA2andA2RiskA2ScoringA2(CMRS)
Plug-inA2-A2Ans--displaysA2aA2listA2ofA2scriptA2filesA2usedA2byA2Nessus/
PVSA2scannersA2toA2collectA2andA2interpretA2vulnerability,A2compliance,A2andA2configurati
onA2data
ThingsA2thatA2canA2beA2scannedA2forA2securityA2dataA2-A2Ans--
servers,A2workstations,A2peripherals,A2MobileA2deviceA2ManagementA2Servers,A2networkA
2servers
PVSA2(PassiveA2VulnerabilityA2Scanner)A2-A2Ans--
watchesA2andA2determinesA2vulnerabilitiesA2basedA2onA2networkA2traffic,A2insteadA2ofA2act
ivelyA2scanning
ComplianceA2-A2Ans--
aA2stateA2ofA2beingA2inA2accordanceA2withA2establishedA2guidelines,A2specificationsA2orA2l
egislation,A2orA2theA2processA2ofA2becomingA2so
CMRSA2(A2ContinuousA2MonitoringA2andA2RiskA2Scoring)A2-A2Ans--
aA2toolA2toA2provideA2DoDA2componentA2-A2andA2enterprise-
levelA2situationalA2awarenessA2byA2quantitativelyA2displayingA2anA2organization'sA2securit
yA2posture
TaskA2OrderA213-670A2-A2Ans--ImplementationA2ofA2ACAS
, WhatA2isA2theA21stA2screenA2youA2seeA2whenA2youA2logA2inA2toA2SecurityCenter?A2-A2Ans--
Dashboard
SecurityCenterA2BuildingA2BlocksA2-A2Ans---Organization
-Role,A2Group,A2andA2UserA2Definition
-ScanA2ZoneA2(andA2NessusA2Scanners)
-Repository
-Plugin
OrganizationA2-A2Ans--
groupsA2ofA2individualsA2responsibleA2forA2aA2setA2ofA2commonA2assets
ScanA2ZonesA2-A2Ans--
aA2definedA2staticA2rangeA2ofA2IPA2addressesA2thatA2canA2beA2scannedA2byA2oneA2orA2mor
eA2NessusA2Scanners
RepositoriesA2-A2Ans--
areA2proprietaryA2dataA2files,A2residingA2onA2theA2SecurityA2Center,A2thatA2storeA2scanA2re
sults
PassiveA2scanningA2pluginsA2RangeA2-A2Ans--1-10,000
ActiveA2(Nessus)A2pluginA2RangeA2-A2Ans--10,001-900,000
CustomA2pluginsA2createdA2byA2usersA2RangeA2-A2Ans--900,001-999,999
ComplianceA2pluginA2RangeA2-A2Ans--1,000,000+
WhatA2isA2theA2maximumA2sizeA2ofA2aA2SecurityCenterA25A2Repository?A2-A2Ans--32GB
HowA2canA2youA2getA2yourA2SecurityCenterA2pluginA2updates?A2-A2Ans--
AutomaticallyA2fromA2DISA'sA2pluginA2serverA2andA2manuallyA2fromA2theA2DoDA2PatchA2R
epository
AA2ScanA2JobA2incorporatesA2-A2Ans--
Policy,A2schedule,A2Credentials,A2ImportA2Repository,A2Targets,A2andA2ScanA2Zone
StepsA2toA2runA2aA2ScanA2withA2SecurityCenterA25A2-A2Ans--1.A2CreateA2aA2ScanA2Policy
2.A2CreateA2aA2Scan
3.A2LaunchA2theA2Scan
4.A2ViewA2theA2ScanA2Results
CredentialsA2-A2Ans--
administrativeA2levelA2usernamesA2andA2passwordsA2(orA2SSHA2keypairs)A2thatA2areA2use
dA2inA2authenticatedA2scans