312-50V11 · Question #398
Which type of security document is written with specific step-by-step details?
The correct answer is B. Procedure. A procedure is the most granular type of security document, providing explicit step-by-step instructions for completing a specific task or process.
Question
Which type of security document is written with specific step-by-step details?
Options
- AProcess
- BProcedure
- CPolicy
- DParadigm
How the community answered
(28 responses)- A4% (1)
- B89% (25)
- C7% (2)
Why each option
A procedure is the most granular type of security document, providing explicit step-by-step instructions for completing a specific task or process.
A process describes a series of interrelated tasks and their flow at a higher level but does not provide the specific step-by-step instructions that procedures contain.
A procedure defines the exact, sequential steps an individual must follow to accomplish a specific task, making it the most detailed type of security documentation. Unlike policies or processes, procedures leave little to interpretation and are typically written for a specific audience performing a specific function. This level of specificity is what distinguishes procedures from higher-level documents.
A policy defines the rules, requirements, and intent of management regarding a security topic but does not contain actionable step-by-step implementation details.
Paradigm is not a recognized category of security documentation and has no defined role in security governance frameworks.
Concept tested: Security governance document hierarchy - procedures
Source: https://csrc.nist.gov/publications/detail/sp/800-12/rev-1/final
Topics
Community Discussion
No community discussion yet for this question.