CISSP ISSEP EXAM QUESTIONS AND ACCURATE ANSWERS
LATEST UPDATE
What are the phases of SDLC - Planning, system analysis & requirements, system
design, development, integration & testing, implementation, operation & maintenance
Engineering Principles for Information Technology Security - The answer is NIST SP
800-27a
Guidance for Preparing and Submitting Security Plans of
Action and Milestones (POA&M) - The answer is OMB M-02-01
Defines 8 system security principles and 14 practices - The answer is NIST SP 800-14
The Congress declares that improving the security and privacy
of sensitive information in Federal computer systems is in the
public interest, and hereby creates a means for establishing
minimum acceptable security practices for such systems - Answer Computer Security
Act of 1987
Entity Authentication Using Public Key Cryptography - Answer FIPS 196
Digital Signature Standard - Answer FIPS 186-2
Escrowed Encryption Standard - Answer FIPS 185
Standards for Security Categorization of Federal Information
,and Information Systems - Answer FIPS 199
Minimum Security Requirements for Federal Information and
Information Systems - Answer FIPS 200
Guide for Mapping types of Information and Information
Systems to Security Categories - Answer NIST SP 800-60
Recommended Security Controls for Federal Information
Systems and Organizations - Answer NIST SP 800-53
National Checklist Program for IT Products-Guidelines for
Checklist Users and Developer - Answer NIST SP 800-70
Guide for Assessing the Security controls in Federal
Information Systems - Answer NIST SP 800-53A
Guide to Applying the Risk Management Framework to
Federal Information Systems: A Security Life Cycle Approach - Answer NIST SP 800-37
(Feb 22 2010)
Managing Risk from Information Systems - Answer NIST SP 800-39 v.2
National Training Standard for Senior System Managers - Answer CNSSI No. 4012
Operation of the Defense Acquisition Process - Answer DoDD 5000.2
, National Industrial Security Program Operating Manual
(NISPOM) - Answer DoD 5220.22-M
Secure Electronic Messaging Services - Reply to NSTISSP No. 7
Securing Voice Communications - Reply to NSTISSP No. 101
National Information Assurance Certification and Accreditation
Process (NIACAP) - Reply to NSTISSI No. 1000
National Policy on Certification and Accreditation of National
Security Telecommunications and Information Systems - Reply to CNSSP No. 6
National COMSEC Instruction - Reply to NACSI 6002
Security Considerations in the System Development Life
Cycle - Reply to NIST SP 800-64
Implementing a Patch and Vulnerability Management Program - Answer NIST SP 800-40
Including Security in Information Systems Investments and Funding - Answer OMB
M-00-07
This directive dictates that all classified information to which a contractor has been
given access or is custodian of must be protected.
A. NISPOM
B. DoD 8250.1
C. DoD 8570.1
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller Easton. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $9.99. You're not tied to anything after your purchase.