nerdexam
(ISC)2

SSCP · Question #33

Which of the following was developed by the National Computer Security Center (NCSC) for the US Department of Defense ?

The correct answer is A. TCSEC. The Trusted Computer System Evaluation Criteria (TCSEC), commonly called the 'Orange Book,' was published in 1983 by the NCSC on behalf of the US Department of Defense. It defined security evaluation criteria and trust levels (D, C1, C2, B1, B2, B3, A1) for computing systems…

Submitted by brentm· Apr 18, 2026Security Concepts and Practices

Question

Which of the following was developed by the National Computer Security Center (NCSC) for the US Department of Defense ?

Options

  • ATCSEC
  • BITSEC
  • CDIACAP
  • DNIACAP

How the community answered

(28 responses)
  • A
    96% (27)
  • D
    4% (1)

Explanation

The Trusted Computer System Evaluation Criteria (TCSEC), commonly called the 'Orange Book,' was published in 1983 by the NCSC on behalf of the US Department of Defense. It defined security evaluation criteria and trust levels (D, C1, C2, B1, B2, B3, A1) for computing systems. ITSEC is the European equivalent. DIACAP and NIACAP are US government accreditation frameworks, not evaluation criteria documents, and were developed by different bodies (DoD and CNSS respectively).

Topics

#TCSEC#Security Models#NCSC#DoD Security Standards

Community Discussion

No community discussion yet for this question.

Full SSCP Practice