(ISC)2(ISC)2
SSCP · Question #1087
SSCP Question #1087: Real Exam Question with Answer & Explanation
The correct answer is B: C2. A Security Reference Monitor is a fundamental concept associated with the C2 level of the DoD Trusted Computer System Evaluation Criteria (TCSEC) standard.
Submitted by mike_84· Apr 18, 2026Security Concepts and Practices
Question
A Security Reference Monitor relates to which DoD security standard?
Options
- ALC3
- BC2
- CD1
- DL2TP
- ENone of the items listed
Explanation
A Security Reference Monitor is a fundamental concept associated with the C2 level of the DoD Trusted Computer System Evaluation Criteria (TCSEC) standard.
Common mistakes.
- A. LC3 is not a recognized DoD security standard or evaluation level within the TCSEC framework.
- C. D1 is the lowest security level in TCSEC, offering minimal protection and not requiring the full conceptualization of a Security Reference Monitor.
- D. L2TP (Layer 2 Tunneling Protocol) is a network protocol for virtual private networks, not a DoD security standard for system evaluation.
- E. Choice B is correct, rendering 'None of the items listed' incorrect.
Concept tested. DoD TCSEC C2 security requirements
Reference. https://en.wikipedia.org/wiki/Trusted_Computer_System_Evaluation_Criteria
Topics
#Security Reference Monitor#TCSEC (Orange Book)#DoD Security Standards#Trusted Computing Base
Community Discussion
No community discussion yet for this question.