New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 ISSEP Exam - Topic 4 Question 8 Discussion

Actual exam question for ISC2's ISSEP exam
Question #: 8
Topic #: 4
[All ISSEP Questions]

Which of the following DoD policies establishes policies and assigns responsibilities to achieve DoD IA through a defense-in-depth approach that integrates the capabilities of personnel, operations, and technology, and supports the evolution to network-centric warfare?

Show Suggested Answer Hide Answer
Suggested Answer: D

DoD 8500.1 Information Assurance (IA) sets up policies and allots responsibilities to achieve DoD IA

through a defense-in-depth approach that

integrates the capabilities of personnel, operations, and technology, and supports the evolution to

network-centric warfare.

DoD 8500.1 also summarizes the roles and responsibilities for the persons responsible for carrying

out the IA policies.

Answer option A is incorrect. The DoD 8500.2 Information Assurance Implementation pursues

8500.1. It provides assistance on how to

implement policy, assigns responsibilities, and prescribes procedures for applying integrated, layered

protection of the DoD information

systems and networks.

DoD Instruction 8500.2 allots tasks and sets procedures for applying integrated layered protection of

the DOD information systems and

networks in accordance with the DoD 8500.1 policy. It also provides some important guidelines on

how to implement an IA program.

Answer option C is incorrect. DoDI 5200.40 executes the policy, assigns responsibilities, and

recommends procedures under reference for

Certification and Accreditation(C&A) of information technology (IT).

Answer option B is incorrect. DoD 8510.1-M DITSCAP provides standardized activities leading to

accreditation, and establishes a process and

management baseline.


Contribute your Thoughts:

0/2000 characters
Mirta
4 months ago
Don't forget about DoDI 5200.40; it's important too!
upvoted 0 times
...
Tamra
4 months ago
Wait, is this really about network-centric warfare? Sounds complicated!
upvoted 0 times
...
Taryn
4 months ago
Actually, I thought it was DoD 8500.2.
upvoted 0 times
...
Lizbeth
4 months ago
Yeah, I agree with Judy!
upvoted 0 times
...
Judy
5 months ago
I'm pretty sure it's DoD 8500.1 for IA.
upvoted 0 times
...
Remona
5 months ago
I remember studying DoD 8510.1-M DITSCAP, but I don't think it focuses on the defense-in-depth strategy like the question asks.
upvoted 0 times
...
Elenore
5 months ago
I'm leaning towards C, DoDI 5200.40, but I could be mixing it up with another directive. It's all a bit confusing.
upvoted 0 times
...
Broderick
5 months ago
I feel like I've seen a question like this before, and it was about the defense-in-depth approach. Maybe it's A, but I can't recall the specifics.
upvoted 0 times
...
Nguyet
5 months ago
I think the answer might be D, DoD 8500.1, but I'm not completely sure. I remember it covers IA policies.
upvoted 0 times
...
Aliza
5 months ago
Hmm, I'm a little unsure about this one. The options seem similar, but I think I can narrow it down by focusing on the key details about collecting and evaluating information. Let me think this through.
upvoted 0 times
...
Leonida
5 months ago
Hmm, I'm a bit confused on this one. I know paravirtualization is different from full virtualization, but I can't recall the specific disk protocol used. I'll have to think this through.
upvoted 0 times
...
Jesus
5 months ago
This looks like a straightforward networking question. I'll think through the protocols I know TMS uses and select the two most likely options.
upvoted 0 times
...

Save Cancel