Pass the ISC ISC certification ISSEP Questions and answers with CertsForce

Viewing page 1 out of 7 pages
Viewing questions 1-10 out of questions
Questions # 1:

You work as a security engineer for BlueWell Inc. According to you, which of the following statements determines the main focus of the ISSE process

Options:

A.

Design information systems that will meet the certification and accreditation documentation.


B.

Identify the information protection needs.


C.

Ensure information systems are designed and developed with functional relevance.


D.

Instruct systems engineers on availability, integrity, and confidentiality.


Expert Solution
Questions # 2:

Which of the following sections of the SEMP template defines the project constraints, to include constraints on funding, personnel, facilities, manufacturing capability and capacity, critical resources, and other constraints

Options:

A.

Section 3.1.5


B.

Section 3.1.8


C.

Section 3.1.9


D.

Section 3.1.7


Expert Solution
Questions # 3:

Diane is the project manager of the HGF Project. A risk that has been identified and analyzed in the project planning processes is now coming into fruition. What individual should respond to the risk with the preplanned risk response

Options:

A.

Project sponsor


B.

Risk owner


C.

Diane


D.

Subject matter expert


Expert Solution
Questions # 4:

Which of the following are the phases of the Certification and Accreditation (C&A) process Each correct answer represents a complete solution. Choose two.

Options:

A.

Auditing


B.

Initiation


C.

Continuous Monitoring


D.

Detection


Expert Solution
Questions # 5:

An Authorizing Official plays the role of an approver. What are the responsibilities of an Authorizing Official Each correct answer represents a complete solution. Choose all that apply.

Options:

A.

Ascertaining the security posture of the organization's information system


B.

Reviewing security status reports and critical security documents


C.

Determining the requirement of reauthorization and reauthorizing information systems when required


D.

Establishing and implementing the organization's continuous monitoring program


Expert Solution
Questions # 6:

Fill in the blank with an appropriate phrase. _________________ is used to verify and accredit systems by making a standard process, set of activities, general tasks, and management structure.

Options:

A.

DITSCAPNIACAP


Expert Solution
Questions # 7:

Certification and Accreditation (C&A or CnA) is a process for implementing information security. It is a systematic procedure for evaluating, describing, testing, and authorizing systems prior to or after a system is in operation. Which of the following statements are true about Certification and Accreditation Each correct answer represents a complete solution. Choose two.

Options:

A.

Accreditation is a comprehensive assessment of the management, operational, and technical security controls in an information system.


B.

Accreditation is the official management decision given by a senior agency official to authorize operation of an information system.


C.

Certification is a comprehensive assessment of the management, operational, and technical security controls in an information system.


D.

Certification is the official management decision given by a senior agency official to authorize operation of an information system.


Expert Solution
Questions # 8:

Which of the following types of cryptography defined by FIPS 185 describes a cryptographic algorithm or a tool accepted as a Federal Information Processing Standard

Options:

A.

Type III (E) cryptography


B.

Type III cryptography


C.

Type I cryptography


D.

Type II cryptography


Expert Solution
Questions # 9:

Della works as a systems engineer for BlueWell Inc. She wants to convert system requirements into a comprehensive function standard, and break the higher-level functions into lower-level functions. Which of the following processes will Della use to accomplish the task

Options:

A.

Risk analysis


B.

Functional allocation


C.

Functional analysis


D.

Functional baseline


Expert Solution
Questions # 10:

Which of the following tasks obtains the customer agreement in planning the technical effort

Options:

A.

Task 9


B.

Task 11


C.

Task 8


D.

Task 10


Expert Solution
Viewing page 1 out of 7 pages
Viewing questions 1-10 out of questions