Month End Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

PDF CSSLP Study Guide

Page: 7 / 13
Total 349 questions

Certified Secure Software Lifecycle Professional Questions and Answers

Question 25

You work as a security manager for BlueWell Inc. You are going through the NIST SP 800-37 C&A methodology, which is based on four well defined phases. In which of the following phases of NIST SP 800-37 C&A methodology does the security categorization occur?

Options:

A.

Security Accreditation

B.

Security Certification

C.

Continuous Monitoring

D.

Initiation

Question 26

Which of the following is a standard that sets basic requirements for assessing the effectiveness of computer security controls built into a computer system?

Options:

A.

FITSAF

B.

FIPS

C.

TCSEC

D.

SSAA

Question 27

Which of the following security models characterizes the rights of each subject with respect to every object in the computer system?

Options:

A.

Clark-Wilson model

B.

Bell-LaPadula model

C.

Biba model

D.

Access matrix

Question 28

Drag and drop the appropriate principle documents in front of their respective functions.

Options:

Page: 7 / 13
Total 349 questions