Reference no: EM133294877
Question 1.
The definitions used to categorize information by sensitivity level should be _____.
Extracted from FIPS 200
None of the listed choices are correct.
Standardized
Unique to the type of data.
Question 2.
Risk assessments have been less than useful in the past due to which of the following?
The implementation of minimum security baselines made the risk assessments superfluous and irrelevant.
Writers used terminology which was not understood by the intended audience.
There was no common definition of risk to use as the basis for an assessment.
Assessments focused on threats and vulnerabilities.
Question 3.
System criticality analyses can affect which of the following?
Schedules for software implementation and testing.
Business Reference Model
Network topology and segmentation
Crisis management and restoration and recovery of operations after an attack or disaster.
Question 4.
A federal information system is used to collect, process, and store information about businesses which may include trade secrets and other intellectual property. Which of the following labels should be used to classify this information?
Top Secret
Public
Restricted
Secret