nerdexam
EC-Council

312-49 · Question #677

Which among the following laws emphasizes the need for each Federal agency to develop, document, and implement an organization-wide program to provide information security for the information…

The correct answer is A. FISMA. FISMA (Federal Information Security Management Act) of 2002 specifically mandates that each U.S. federal agency develop, document, and implement an organization-wide program for information security to protect its information systems and data assets. HIPAA applies to healthcare…

Submitted by carlos_mx· Apr 18, 2026Computer Forensics in Today's World

Question

Which among the following laws emphasizes the need for each Federal agency to develop, document, and implement an organization-wide program to provide information security for the information systems that support its operations and assets?

Options

  • AFISMA
  • BHIPAA
  • CGLBA
  • DSOX

How the community answered

(34 responses)
  • A
    85% (29)
  • B
    9% (3)
  • C
    3% (1)
  • D
    3% (1)

Explanation

FISMA (Federal Information Security Management Act) of 2002 specifically mandates that each U.S. federal agency develop, document, and implement an organization-wide program for information security to protect its information systems and data assets. HIPAA applies to healthcare organizations, GLBA (Gramm-Leach-Bliley Act) applies to financial institutions, and SOX (Sarbanes-Oxley) governs financial reporting for public companies - none of these target federal agency information security programs.

Topics

#Information Security Laws#Federal Agencies#Compliance#FISMA

Community Discussion

No community discussion yet for this question.

Full 312-49 Practice