Domain 6 - Security Assessment and Testing Flashcards
1
Q
Security Assessments
A
Comprehensive reviews of the security of a system, application, or other tested environment
2
Q
Security Audits
A
Many of the same techniques as security assessment but must be performed by independent auditors (who may still be internal, external, or third party)
3
Q
Security Testing
A
Verify that a control is functioning properly; automated scans; as well as manual attempts to undermine security
4
Q
NIST SP 800-53A
A
Describes best practices in conducting security and privacy assessments