CAP · Question #227
Which of the following documents is used to provide a standard approach to the assessment of NIST SP 800-53 security controls?
The correct answer is A. NIST SP 800-53A. NIST SP 800-53A (Assessing Security and Privacy Controls in Information Systems and Organizations) provides a standardized, repeatable methodology for assessing the security controls defined in NIST SP 800-53. It contains detailed assessment procedures, objectives, and methods…
Question
Which of the following documents is used to provide a standard approach to the assessment of NIST SP 800-53 security controls?
Options
- ANIST SP 800-53A
- BNIST SP 800-66
- CNIST SP 800-41
- DNIST SP 800-37
How the community answered
(67 responses)- A88% (59)
- B1% (1)
- C3% (2)
- D7% (5)
Explanation
NIST SP 800-53A (Assessing Security and Privacy Controls in Information Systems and Organizations) provides a standardized, repeatable methodology for assessing the security controls defined in NIST SP 800-53. It contains detailed assessment procedures, objectives, and methods (examine, interview, test) for each control. NIST SP 800-66 addresses HIPAA security rule implementation, SP 800-41 covers firewall guidelines, and SP 800-37 describes the Risk Management Framework (RMF) process - none of these provide the control-by-control assessment procedures that SP 800-53A does.
Topics
Community Discussion
No community discussion yet for this question.