FITSP Manager-Part 2 Exam Questions and Answers
FITSP Manager-Part 2 Exam Questions and Answers HIDS/HIPS - Answer ️️ -- Host-Based, - monitors the characteristics of a single host and the events occurring within that host for suspicious activity and most commonly deployed on critical hosts such as publicly accessible servers and servers containing sensitive information - network traffic (only for that host), system logs, running processes, application activity, file access and modification, and system and application configuration changes. NIST SP 800-60, Rev 1 - Answer ️️ -Security Categorization NIST SP 800-122 - Answer ️️ -Categorizing PII FIPS-199 - Answer ️️ -Security Categorization FIPS-200 - Answer ️️ -Minimum Security Requirements NIST SP 800-18, Rev 1 - Answer ️️ -System Security Plan NIST SP 800-30, Rev 1 - Answer ️️ -Risk Assessment Please note that original version has been replaced by 800-39, which is Risk Management Risk Impact - Answer ️️ -Risk associated with the operation and use of information systems that support the missions and business functions of their organizations NIST SP 800-34 - Answer ️️ -Contingency Planning for IT Systems NIST SP 800-37, Rev 2 - Answer ️️ -RMF/Roles and Process FIPS 180-2 - Answer ️️ -- Secure Hash Standard - Federal agencies must use the Secure Hash Standard if we use hashing - Provides Integrity - SHA (Secure Hash Algorithm) there are 4 hash algorithms (SHA-1, SHA-256, SHA-384, SHA- 512) - Secure because a change to a message results in a different message digest. - Other non-standard hash algorithms (MD2, MD5, CRC, HAVAL) FIPS 186-2 - Answer ️️ -- Digital Signature Standard - Provides integrity (message digest) and nonrepudiation (only I have my private key) - Algorithms - Digital Signature Algorithm (DSA) - RSA digital signature algorithm, specified in American National Standard (ANS) X9.31 and Public - Key Cryptography Standard (PKCS) - Elliptic Curve Digital Signature Algorithm (ECDSA), specified in ANS X9.62. FIPS 186-3 approves the use of ECDSA FIPS 197 - Answer ️️ -- specifies AES, Advanced Encryption Standard - uses Rijndael Algorithm - Encrypting is best way to provide confidentiality - Symmetric encryption - faster than asymmetric encryption - Cipher Key lengths -128, 192, 256 - three "flavors" FIPS 198-1 - Answer ️️ -- Keyed Hash Message Authentication Code (HMAC) - Purpose of a MAC is to authenticate both the source of the message and its integrity. - HMACs have 2 parameters: 1) Message input and 2) secret key known only to originator and intended receiver. - HMAC is used by the message sender to produce a value (the MAC) that is formed by hashing the secret key and the message input. FIPS 140-2 - Answer ️️ -- Security Requirements for Cryptographic Modules - Level 1: Basic Security. Atleast one approved algorithm or approved security function shall be used - Level 2: Adds tamper evident coatings, adds role-base
Información del documento
- Subido en
- 26 de enero de 2024
- Número de páginas
- 47
- Escrito en
- 2023/2024
- Tipo
- Examen
- Contiene
- Preguntas y respuestas