CORRECT Answers
Youtube Start of Series - CORRECT ANSWER -
https://www.youtube.com/watch?v=SBrBmSfUz2Y&index=1&list=PLczjn_GmBh1zqrYVdO0d
BE38NOnenMQjk
RMF - CORRECT ANSWER - Risk Management Framework
RMF - 6 Steps - CORRECT ANSWER - Categorize
Select
Implement
Assess
Authorize
Monitor
3 Documents that are found in the RMF requirements? - CORRECT ANSWER - Federal
Information Security Management Act (FISMA)
NIST 800-37 Rev1
Department of Defense Instruction Number 8510.01
Trusted System = - CORRECT ANSWER - All protection mechanisms work to process
sensitive data for many types of users and maintain the same level of protection.
Assurance = - CORRECT ANSWER - Degree of trust or confidence that the system will
act in a correct and predictable manner in each and every computing situation. Confidence in the
ability of the system security features to meet security objectives based on operating system,
architecture, and connectivity.
, DoD Information Systems
5 levels - CORRECT ANSWER - Availability
Authentication
Confidentiality
Non-repudiation
Integrity
What is non-repudiation? - CORRECT ANSWER - Make sure that I cannot deny,
whatever it is that I did.
CIA Triad - CORRECT ANSWER - Confidentiality
Integrity
Availability
3 Classes of Security Control Structure - CORRECT ANSWER - Management
Operational
Technical
Security Control Class 1
Management - CORRECT ANSWER - Management - actions taken to manage the
development, maintenance and used of the system. Seen by policies, procedures, and rule.
Security Control Class 2
Operational - CORRECT ANSWER - Day-to-day mechanisms and procedures used to
protect operational systems and environment. Seen by awareness training, configuration
management, and incident response.
Security Control Class 3