ISC CAP Practice Test - Questions Answers, Page 34

List of questions
Question 331

Which of the following NIST C&A documents is the guideline for identifying an information system as a National Security System?
Question 332

Which of the following system security policies is used to address specific issues of concern to the organization?
Question 333

Which of the following individuals is responsible for ensuring the security posture of the organization's information system?
Question 334

In which of the following Risk Management Framework (RMF) phases is a risk profile created for threats?
Question 335

In which of the following DITSCAP phases is the SSAA developed?
Question 336

Which of the following recovery plans includes a monitoring process and triggers for initiating planned actions?
Question 337

What does RTM stand for?
Question 338

Which of the following parts of BS 7799 covers risk analysis and management?
Question 339

Which of the following NIST documents includes components for penetration testing?
Question 340

According to FIPS Publication 199, what are the three levels of potential impact on organizations in the event of a compromise on confidentiality, integrity, and availability?
Question