SSCP · Question #211
The Information Technology Security Evaluation Criteria (ITSEC) was written to address which of the following that the Orange Book did not address?
The correct answer is C. integrity and availability. TCSEC focused on confidentiality while ITSEC added integrity and availability as security goals. The following answers are incorrect: integrity and confidentiality. Is incorrect because TCSEC addressed confidentiality. confidentiality and availability. Is incorrect because…
Question
The Information Technology Security Evaluation Criteria (ITSEC) was written to address which of the following that the Orange Book did not address?
Options
- Aintegrity and confidentiality.
- Bconfidentiality and availability.
- Cintegrity and availability.
- Dnone of the above.
How the community answered
(45 responses)- A2% (1)
- B4% (2)
- C93% (42)
Explanation
TCSEC focused on confidentiality while ITSEC added integrity and availability as security goals. The following answers are incorrect: integrity and confidentiality. Is incorrect because TCSEC addressed confidentiality. confidentiality and availability. Is incorrect because TCSEC addressed confidentiality. none of the above. Is incorrect because ITSEC added integrity and availability as security goals.
Topics
Community Discussion
No community discussion yet for this question.