nerdexam
(ISC)2

CSSLP · Question #240

Which of the following DITSCAP phases validates that the preceding work has produced an IS that operates in a specified computing environment?

The correct answer is D. Phase 3. DITSCAP Phase 3, called 'Validation,' ensures that the implemented Information System (IS) operates as intended within its specified computing environment and meets its security requirements.

Secure Software Lifecycle Management

Question

Which of the following DITSCAP phases validates that the preceding work has produced an IS that operates in a specified computing environment?

Options

  • APhase 2
  • BPhase 4
  • CPhase 1
  • DPhase 3

How the community answered

(25 responses)
  • A
    4% (1)
  • B
    8% (2)
  • D
    88% (22)

Why each option

DITSCAP Phase 3, called 'Validation,' ensures that the implemented Information System (IS) operates as intended within its specified computing environment and meets its security requirements.

APhase 2

Phase 2 of DITSCAP is 'Verification,' which assesses the security requirements and design of the IS, not its operational validation in the environment.

BPhase 4

Phase 4 of DITSCAP is 'Post-Accreditation,' which involves continuous monitoring and managing the security posture of the accredited system over its lifecycle.

CPhase 1

Phase 1 of DITSCAP is 'Definition,' where the system's mission, environment, and security requirements are identified and documented.

DPhase 3Correct

DITSCAP (DoD Information Technology Security Certification and Accreditation Process) Phase 3, known as the 'Validation' phase, focuses on verifying that the developed system operates securely in its intended environment and satisfies all defined security requirements before accreditation.

Concept tested: DITSCAP phases - Validation

Source: https://irp.fas.org/doddir/dod/i8510-1m/index.html

Topics

#DITSCAP#Certification and Accreditation#System Security#Validation

Community Discussion

No community discussion yet for this question.

Full CSSLP Practice