Which of the following is not one of the seven steps recommended by the NIST 800-53 standard for building an effective risk management system?

A. Understanding the impact of risk on each system in the organization
B. Adjust or tailor the initial baseline of security controls after assessing the impacts of identified risk
C. Monitor and assess selected controls continually
D. Perform adequate penetration testing activities to ensure security of software products


Answer: D

Computer Science & Information Technology

You might also like to view...

To handle the mouse click event on a pane p, register the handler with p using ______.

a. p.setOnMouseClicked(handler); b. p.setOnMouseDragged(handler); c. p.setOnMouseReleased(handler); d. p.setOnMousePressed(handler);

Computer Science & Information Technology

An object is always anchored to a paragraph

Indicate whether the statement is true or false

Computer Science & Information Technology

In a document preview from the Print button in Office 2010, the headers and footers are viewable

Indicate whether the statement is true or false

Computer Science & Information Technology

Which of the following filenames will NOT be displayed by using the flower* search string?

A) flow B) flower C) flowers D) flowerpot

Computer Science & Information Technology