Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CSSLP Exam - Topic 7 Question 120 Discussion

In 2003, NIST developed a new Certification & Accreditation (C&A) guideline known as FIPS 199. What levels of potential impact are defined by FIPS 199?Each correct answer represents a complete solution. Choose all that apply.
B) Medium and C) High and D) Low
A) Moderate

ISC2 CSSLP Exam - Topic 7 Question 120 Discussion

Actual exam question for ISC2's CSSLP exam
Question #: 120
Topic #: 7
[All CSSLP Questions]

In 2003, NIST developed a new Certification & Accreditation (C&A) guideline known as FIPS 199. What levels of potential impact are defined by FIPS 199?

Each correct answer represents a complete solution. Choose all that apply.

Show Suggested Answer Hide Answer
Suggested Answer: B, C, D

In 2003, NIST developed a new Certification & Accreditation (C&A) guideline known as FIPS 199. FIPS 199 is a standard for security

categorization of Federal Information and Information Systems. It defines three levels of potential impact:

Low: It causes a limited adverse effect.

Medium: It causes a serious adverse effect.

High: It causes a severe adverse effect.


Contribute your Thoughts:

0/2000 characters
Tashia
4 days ago
I feel like I’ve seen a question like this before. I’m pretty sure the correct answers are Low, Moderate, and High.
upvoted 0 times
...
Dianne
9 days ago
I remember studying something about the impact levels, and I think it’s definitely Low, Moderate, and High. Medium seems off to me.
upvoted 0 times
...
Carlene
15 days ago
I think FIPS 199 defines three levels of impact: Low, Moderate, and High. I’m not sure about Medium though.
upvoted 0 times
...

Save Cancel