nerdexam
(ISC)2

SSCP · Question #211

The Information Technology Security Evaluation Criteria (ITSEC) was written to address which of the following that the Orange Book did not address?

The correct answer is C. integrity and availability. TCSEC focused on confidentiality while ITSEC added integrity and availability as security goals. The following answers are incorrect: integrity and confidentiality. Is incorrect because TCSEC addressed confidentiality. confidentiality and availability. Is incorrect because…

Submitted by minji_kr· Apr 18, 2026Security Concepts and Practices

Question

The Information Technology Security Evaluation Criteria (ITSEC) was written to address which of the following that the Orange Book did not address?

Options

  • Aintegrity and confidentiality.
  • Bconfidentiality and availability.
  • Cintegrity and availability.
  • Dnone of the above.

How the community answered

(45 responses)
  • A
    2% (1)
  • B
    4% (2)
  • C
    93% (42)

Explanation

TCSEC focused on confidentiality while ITSEC added integrity and availability as security goals. The following answers are incorrect: integrity and confidentiality. Is incorrect because TCSEC addressed confidentiality. confidentiality and availability. Is incorrect because TCSEC addressed confidentiality. none of the above. Is incorrect because ITSEC added integrity and availability as security goals.

Topics

#ITSEC#Orange Book#Security Evaluation Criteria#Integrity and Availability

Community Discussion

No community discussion yet for this question.

Full SSCP Practice