ANNEX D: SECURITY (HBSS + ACAS): Exam
| Questions and Answers with Verified Solutions
| Latest 2026 Update
Q: Security Technical Information Guide (STIG)
Answer:
A carefully crafted document that includes not only DoD policies and security
regulations, but also up-todate best practices and configuration guidelines. These
guidelines are used for securing a specific system or application in accordance with
DoD requirements.
Q: Host-Based Security Systems (HBSS)
Answer:
A host based security system, which means it is located on the individual workstation or
the host. Uses multiple different modules to monitor, detect, and counter against known
cyber threats.
Q: Assured Compliance Assessment Solution (ACAS)
Answer:
Consists of a suite of products to include Red Hat Enterprise Linux, Security Center,
Nessus Scanner and the Nessus Network Monitor (formerly the Passive Vulnerability
Scanner) which is provided by DISA to DoD Customers.
, Q: Public Key Infrastructure (PKI)
Answer:
A framework that consists of hardware, software, people, processes, and policies, that
together helps identify and solve information security problems for you by establishing
safe and reliable environment for electronic transactions in the internet.
Q: Public Key Encryption
Answer:
Protects the confidentiality, integrity, authenticity and non-repudiation of data.
Q: Why do we use HBSS
Answer:
US Cyber Command (USCYBERCOM) mandates that HBSS be installed on every
DoD system.
Q: HBSS Components
Answer:
ePolicy Orchestrator Server, the McAfee Agent, the distributed repositories, and the
registered servers.
Q: McAfee Agent
Answer:
Its job is to provide a secure communication channel to the ePO and manages all of the
other modules that will be installed on the client machine (VSE, HIPS, etc.).
Q: Agent to Server Communication Interval (ASCI)
Answer:
Determines how often the agent checks in with the ePO. Default is 60 minutes.
| Questions and Answers with Verified Solutions
| Latest 2026 Update
Q: Security Technical Information Guide (STIG)
Answer:
A carefully crafted document that includes not only DoD policies and security
regulations, but also up-todate best practices and configuration guidelines. These
guidelines are used for securing a specific system or application in accordance with
DoD requirements.
Q: Host-Based Security Systems (HBSS)
Answer:
A host based security system, which means it is located on the individual workstation or
the host. Uses multiple different modules to monitor, detect, and counter against known
cyber threats.
Q: Assured Compliance Assessment Solution (ACAS)
Answer:
Consists of a suite of products to include Red Hat Enterprise Linux, Security Center,
Nessus Scanner and the Nessus Network Monitor (formerly the Passive Vulnerability
Scanner) which is provided by DISA to DoD Customers.
, Q: Public Key Infrastructure (PKI)
Answer:
A framework that consists of hardware, software, people, processes, and policies, that
together helps identify and solve information security problems for you by establishing
safe and reliable environment for electronic transactions in the internet.
Q: Public Key Encryption
Answer:
Protects the confidentiality, integrity, authenticity and non-repudiation of data.
Q: Why do we use HBSS
Answer:
US Cyber Command (USCYBERCOM) mandates that HBSS be installed on every
DoD system.
Q: HBSS Components
Answer:
ePolicy Orchestrator Server, the McAfee Agent, the distributed repositories, and the
registered servers.
Q: McAfee Agent
Answer:
Its job is to provide a secure communication channel to the ePO and manages all of the
other modules that will be installed on the client machine (VSE, HIPS, etc.).
Q: Agent to Server Communication Interval (ASCI)
Answer:
Determines how often the agent checks in with the ePO. Default is 60 minutes.