FITSP-A Module 7 question with complete solution graded A+ 2023
FITSP-A Module 7 question with complete solution graded A+ 20231. Name the reporting tool, which automates Agency FISMA reporting directly to the DHS. a) FISMA b) DHS Reporting Metrics c) Cyberscope d) Cyberstat - correct answer Correct answer: c) CyberScope. In OMB M-10-15, CyberScope was designated as the reporting tool for FISMA reporting. Incorrect answers: a) FISMA requires the reports; b) DHS Reporting Metrics indicate what must be reported; d) CyberStat refers to OMB's reviews 2. Which family of security controls is considered Tier 2? a) Access Control b) Management Family c) Operational Controls d) Program Management - correct answer Correct answer: d) Program Management NIST SP 800-137, Paragraph 2.1.2 states: "Controls in the Program Management (PM) family are an example of Tier 2 security controls." Incorrect answers: a) Access controls are Tier 3; b) Management a class, not a family; c) Operational controls are a class, not a family. 3. What is the document that provides guidelines for developing a Continuous Monitoring (CM) program?
Written for
- Institution
- FITSP
- Course
- FITSP
Document information
- Uploaded on
- June 28, 2023
- Number of pages
- 13
- Written in
- 2022/2023
- Type
- Exam (elaborations)
- Contains
- Questions & answers
Subjects
- which automates agency
-
fitsp a module 7 question with complete solution g
-
1 name the reporting tool
-
2 which family of security controls is considered
-
3 what is the document that provides guideline
Also available in package deal