CISSP – Information Systems Security Management Professional (ISSMP) — Question 29
Which of the following refers to an information security document that is used in the United States Department of Defense (DoD) to describe and accredit networks and systems?
Answer options
- A. SSAA
- B. FITSAF
- C. FIPS
- D. TCSEC
Correct answer: A
Explanation
The correct answer is A, SSAA, which stands for System Security Authorization Agreement, used by the DoD for accrediting systems. The other options, while related to security and standards, do not serve the specific purpose of describing and accrediting networks and systems as SSAA does.