100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

FITSP Manager Certification Exam Guide – Verified Q&A | FISMA, RMF, NIST Compliance

Rating
-
Sold
-
Pages
73
Grade
A+
Uploaded on
15-01-2026
Written in
2025/2026

Master federal IT security and land your FITSP certification with this targeted exam prep! Includes up-to-date questions and answers on FISMA, Risk Management Framework (RMF), NIST standards, and federal cybersecurity policies. Essential for IT managers, CISOs, auditors, and anyone pursuing federal IT compliance roles—get certified with confidence!

Show more Read less

Content preview

FITSP - Manager Questions Newest Actual Exam With Complete
Questions And Correct Detailed Answers (Verified Answers)
|Already Graded A+


The following legislation requires federal agencies to establish capital
planning and investment control policies and procedures when
procuring information technology:
a) E-Government Act of 2002
b) Federal Information Security Management Act (FISMA)
c) Government Information Security Reform Act (GISRA)
d) Clinger-Cohen Act - ANSWERS--Clinger-Cohen Act


The following legislation requires federal agencies to appoint a Chief
Information Officer:
a) E-Government Act of 2002
b) Federal Information Security Management Act (FISMA)
c) Government Information Security Reform Act (GISRA)
d) Clinger-Cohen Act - ANSWERS--Clinger-Cohen Act


The following legislation requires federal agencies to develop,
document, and implement an agency-wide information security
program:
a) E-Government Act of 2002, Section 208
b) Federal Information Security Management Act (FISMA)
c) Government Information Security Reform Act (GISRA)

,d) Clinger-Cohen Act - ANSWERS--Federal Information Security
Management Act (FISMA)


The following legislation requires federal agencies to prepare Privacy
Impact Assessments (PIAs) when developing or procuring new
information technology:
a) E-Government Act of 2002, Section 208
b) Federal Information Security Management Act (FISMA)
c) Privacy Act, 1974
d) Clinger-Cohen Act - ANSWERS--E-Government Act of 2002, Section
208


The following legislation requires each agency with an Inspector
General to conduct an annual evaluation of agency's information
security program, or to appoint an
independent external auditor, to conduct the evaluation on their
behalf:
a) E-Government Act of 2002, Title I
b) Federal Information Security Management Act (FISMA)
c) Government Information Security Reform Act (GISRA)
d) Clinger-Cohen Act - ANSWERS--Federal Information Security
Management Act (FISMA)




The following OMB guidance established the requirement for federal
agencies to review the security controls in each system when
significant modifications are made to

,the system, or at least every three years. This guidance also requires
federal agencies to re-authorize information systems every three
years.
a) OMB Circular No. A-123- Management Accountability and Control
b) OMB Circular No. A-130, Appendix III, Security of Federal
Automated Information Resources
c) OMB Circular No. A-127, Financial Management Systems
d) OMB Circular No. A-136, Financial Management Reporting
Requirements - ANSWERS--OMB Circular No. A-130, Appendix III,
Security of Federal Automated Information Resources


The Federal Information Security Modernization Act of 2014 (FISMA
2014) formally assigns information security responsibilities to which
of the following agencies/departments (select two):
a) Commerce
b) DHS
c) Justice
d) OMB - ANSWERS--DHS and OMB


What is the required frequency of FISMA reporting feeds for CFO Act
agencies?
a) Monthly
b) Quarterly
c) Semi-annually
d) Annually - ANSWERS--Monthly

, Which law directed the Secretary of Health and Human Services to
develop standards for protecting electronic health information?
a) AARA
b) HITECH
c) HIPAA
d) ePHI - ANSWERS--HIPAA


Current regulations still require the re-authorization of Federal
information systems at least every three years.
a) True
b) False - ANSWERS--False


As part of monitoring the security posture of agency desktops, OMB
requires Federal agencies to
use vulnerability scanning tools that leverage the protocol.
a) SNMP
b) SMTP
c) SCAP
d) LDAP - ANSWERS--SCAP


Following the loss of 26 million records containing Pll at the
Department of Veteran Affairs, OMB released M-06-16 Protection of
Sensitive Agency Information. This memo required all of the
following except:
a) Encryption of all data on mobile computers/devices

Document information

Uploaded on
January 15, 2026
Number of pages
73
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

£27.66
Get access to the full document:

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached

Get to know the seller
Seller avatar
morganmercy389

Get to know the seller

Seller avatar
morganmercy389 Teachme2-tutor
View profile
Follow You need to be logged in order to follow users or courses
Sold
0
Member since
3 months
Number of followers
1
Documents
282
Last sold
-

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these revision notes.

Didn't get what you expected? Choose another document

No problem! You can straightaway pick a different document that better suits what you're after.

Pay as you like, start learning straight away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and smashed it. It really can be that simple.”

Alisha Student

Frequently asked questions