nerdexam
(ISC)2(ISC)2

CSSLP · Question #295

CSSLP Question #295: Real Exam Question with Answer & Explanation

The correct answer is A: Certification analysis. The Verification phase (Phase 2) of DITSCAP C&A includes key activities such as certification analysis, assessment of analysis results, refining the SSAA configuration, and system development to integrate the system for testing.

Secure Software Lifecycle Management

Question

The Phase 2 of DITSCAP C&A is known as Verification. The goal of this phase is to obtain a fully integrated system for certification testing and accreditation. What are the process activities of this phase? Each correct answer represents a complete solution. Choose all that apply.

Options

  • ACertification analysis
  • BAssessment of the Analysis Results
  • CConfiguring refinement of the SSAA
  • DSystem development
  • ERegistration

Explanation

The Verification phase (Phase 2) of DITSCAP C&A includes key activities such as certification analysis, assessment of analysis results, refining the SSAA configuration, and system development to integrate the system for testing.

Common mistakes.

  • E. Registration is typically part of the initial or final steps (e.g., registering the system for accreditation or registering the accreditation status), but not a core 'process activity' within the Verification phase focused on building and testing the system.

Concept tested. DITSCAP C&A Verification phase activities

Topics

#DITSCAP#Certification and Accreditation (C&A)#Verification phase#Security assessment

Community Discussion

No community discussion yet for this question.

Full CSSLP PracticeBrowse All CSSLP Questions