100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

Applying Assessment & Authorization (A&A) in the National Industrial Security Program (NISP) Questions with Complete Solutions

Rating
-
Sold
-
Pages
17
Uploaded on
09-04-2024
Written in
2023/2024

Applying Assessment & Authorization (A&A) in the National Industrial Security Program (NISP) Questions with Complete Solutions

Institution
NISP
Course
NISP










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
NISP
Course
NISP

Document information

Uploaded on
April 9, 2024
Number of pages
17
Written in
2023/2024
Type
Exam (elaborations)
Contains
Unknown

Subjects

Content preview

Applying Assessment & Authorization (A&A) in the National Industrial Security Program (NISP) Questions with Complete Solutions
Select all of the correct responses. Which of the following tasks should the Information System Security Manager (ISSM) perform before beginning the A&A process?
Select one or more:
a. Review the DSS Risk Management Framework (RMF) website
b. Purchase Information System hardware
c. Possess and understand sponsorship and security documentation
d. Contact the Authorizing Official (AO) with questions
e. Register for an ODAA Business Management System (OBMS) account CORRECT ANS a. Review the DSS Risk Management Framework (RMF) website
c. Possess and understand sponsorship and security documentation
Select all of the correct responses. Which of the following must the Information System Security Manager (ISSM) describe at the end of Step 2, Select Security Controls?
Select one or more:
a. Baseline security controls
b. Security control tailoring
c. Selection of overlays
d. Continuous monitoring strategy CORRECT ANS a. Baseline security controls b. Security control tailoring
c. Selection of overlays
d. Continuous monitoring strategy
True or false? When security control implementation is documented, it must describe how the security controls achieve the required security capability.
Select one:
True
False CORRECT ANS True
When does continuous monitoring begin?
Select one:
a. After the Information System has been operational for 30 days
b. Once the security authorization package is submitted
c. As soon as Authorization to Operate (ATO) or ATO with conditions is
issued
d. After the Information System has been operational for 1 year CORRECT ANS c. As soon as Authorization to Operate (ATO) or ATO with conditions is issued
When does DSS schedule an on-site assessment of the security controls?
Select one:
a. 30 days after initiation of the A&A process b. When the System Security Plan (SSP) and supporting artifacts are complete
c. When required by the Authorizing Official (AO)
d. As soon as the security controls are implemented CORRECT ANS Not c
How does an Information System Security Manager (ISSM) submit the System Security Plan (SSP) to DSS?
Select one:
a. Email it to the Authorizing Official (AO)
b. Upload it to the ODAA Business Management System (OBMS)
c. Upload it via the submission interface on the DSS Risk Management Framework (RMF) website
d. Email it to the Security Controls Assessor (SCA) CORRECT ANS Not C
Which of the following is an input to Step 5, Authorize System?
Select one:
a. Security status report
b. Authorization recommendation from the Information Owner (IO)
c. Security authorization package
d. Information System acknowledgement letter CORRECT ANS c. Security authorization package
Where is the security control implementation documented?

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Classroom NURSING
View profile
Follow You need to be logged in order to follow users or courses
Sold
4712
Member since
3 year
Number of followers
3221
Documents
52533
Last sold
3 days ago
NURSING

Assignments, Case Studies, Research, Essay writing service, Questions and Answers, Discussions etc. for students who want to see results twice as fast. I have done papers of various topics and complexities. I am punctual and always submit work on-deadline. I write engaging and informative content on all subjects. Send me your research papers, case studies, psychology papers, etc, and I’ll do them to the best of my abilities. Writing is my passion when it comes to academic work. I’ve got a good sense of structure and enjoy finding interesting ways to deliver information in any given paper. I love impressing clients with my work, and I am very punctual about deadlines. Send me your assignment and I’ll take it to the next level. I strive for my content to be of the highest quality. Your wishes come first— send me your requirements and I’ll make a piece of work with fresh ideas, consistent structure, and following the academic formatting rules. For every student you refer to me with an order that is completed and paid transparently, I will do one assignment for you, free of charge!!!!!!!!!!!!

Read more Read less
4.0

1166 reviews

5
615
4
213
3
191
2
39
1
108

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions