ExamGecko
Home Home / ISC / CAP

ISC CAP Practice Test - Questions Answers, Page 36

Question list
Search
Search

Related questions











Which of the following individuals is responsible for preparing and submitting security status reports to the organizations?

A.
Chief Information Officer
A.
Chief Information Officer
Answers
B.
Senior Agency Information Security Officer
B.
Senior Agency Information Security Officer
Answers
C.
Common Control Provider
C.
Common Control Provider
Answers
D.
Authorizing Official
D.
Authorizing Official
Answers
Suggested answer: C

In which of the following DITSCAP phases is the SSAA developed?

A.
Phase 2
A.
Phase 2
Answers
B.
Phase 4
B.
Phase 4
Answers
C.
Phase 1
C.
Phase 1
Answers
D.
Phase 3
D.
Phase 3
Answers
Suggested answer: C

Which of the following is used throughout the entire C&A process?

A.
DAA
A.
DAA
Answers
B.
DITSCAP
B.
DITSCAP
Answers
C.
SSAA
C.
SSAA
Answers
D.
DIACAP
D.
DIACAP
Answers
Suggested answer: C

What does OCTAVE stand for?

A.
Operationally Computer Threat, Asset, and Vulnerability Evaluation
A.
Operationally Computer Threat, Asset, and Vulnerability Evaluation
Answers
B.
Operationally Critical Threat, Asset, and Vulnerability Evaluation
B.
Operationally Critical Threat, Asset, and Vulnerability Evaluation
Answers
C.
Operationally Computer Threat, Asset, and Vulnerability Elimination
C.
Operationally Computer Threat, Asset, and Vulnerability Elimination
Answers
D.
Operationally Critical Threat, Asset, and Vulnerability Elimination
D.
Operationally Critical Threat, Asset, and Vulnerability Elimination
Answers
Suggested answer: B

Which of the following C&A professionals plays the role of an advisor?

A.
Information System Security Engineer (ISSE)
A.
Information System Security Engineer (ISSE)
Answers
B.
Chief Information Officer (CIO)
B.
Chief Information Officer (CIO)
Answers
C.
Authorizing Official
C.
Authorizing Official
Answers
D.
Information Owner
D.
Information Owner
Answers
Suggested answer: A

In which of the following elements of security does the object retain its veracity and is intentionally modified by the authorized subjects?

A.
Integrity
A.
Integrity
Answers
B.
Nonrepudiation
B.
Nonrepudiation
Answers
C.
Availability
C.
Availability
Answers
D.
Confidentiality
D.
Confidentiality
Answers
Suggested answer: A

Which of the following recovery plans includes a monitoring process and triggers for initiating planned actions?

A.
Business continuity plan
A.
Business continuity plan
Answers
B.
Contingency plan
B.
Contingency plan
Answers
C.
Continuity of Operations Plan
C.
Continuity of Operations Plan
Answers
D.
Disaster recovery plan
D.
Disaster recovery plan
Answers
Suggested answer: B

Which of the following NIST publications defines impact?

A.
NIST SP 800-41
A.
NIST SP 800-41
Answers
B.
NIST SP 800-37
B.
NIST SP 800-37
Answers
C.
NIST SP 800-30
C.
NIST SP 800-30
Answers
D.
NIST SP 800-53
D.
NIST SP 800-53
Answers
Suggested answer: C

Which of the following NIST documents defines impact?

A.
NIST SP 800-26
A.
NIST SP 800-26
Answers
B.
NIST SP 800-53A
B.
NIST SP 800-53A
Answers
C.
NIST SP 800-53
C.
NIST SP 800-53
Answers
D.
NIST SP 800-30
D.
NIST SP 800-30
Answers
Suggested answer: D

Which of the following formulas was developed by FIPS 199 for categorization of an information system?

A.
SCinformation system = {(confidentiality, impact), (integrity, controls), (availability, risk)}
A.
SCinformation system = {(confidentiality, impact), (integrity, controls), (availability, risk)}
Answers
B.
SCinformation system = {(confidentiality, risk), (integrity, impact), (availability, controls)}
B.
SCinformation system = {(confidentiality, risk), (integrity, impact), (availability, controls)}
Answers
C.
SCinformation system = {(confidentiality, impact), (integrity, impact), (availability, impact)}
C.
SCinformation system = {(confidentiality, impact), (integrity, impact), (availability, impact)}
Answers
D.
SCinformation system = {(confidentiality, controls), (integrity, controls), (availability, controls )}
D.
SCinformation system = {(confidentiality, controls), (integrity, controls), (availability, controls )}
Answers
Suggested answer: C
Total 395 questions
Go to page: of 40