solutions) passed
NIST risk management framework - correct answer ✔✔
NIST SP 800-50 - correct answer ✔✔ "Building an Information
Technology Security Awareness
and Training Program" which focuses on information security awareness programs
NIST SP 800-137 - correct answer ✔✔ "Information Security Continuous Monitoring (ISCM) for
Federal Systems and Organizations" and describes the process of building and maintaining an
ISCM.
1 define
2 establish
3 implement
4 analyze and report
5 respond
6 review, and update
NIST SP 800-53A - correct answer ✔✔ "Guide for Assessing Security Controls in Federal
Information Systems and Organizations" and covers assessing security and privacy controls for
federal systems and organizations.
NIST SP 800-115 - correct answer ✔✔ "Technical Guide to Information Security Testing and
Assessment"