Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 Exam ISSMP Topic 1 Question 48 Discussion

Actual exam question for ISC2's Information Systems Security Management Professional exam
Question #: 48
Topic #: 1
[All Information Systems Security Management Professional Questions]

Which of the following rate systems of the Orange book has no security controls?

Show Suggested Answer Hide Answer
Suggested Answer: A

A D-rated system of the Orange book has no security controls. This category is reserved for those systems that have been evaluated but that fail to meet the requirements for a higher division (A, B, and C).

Trusted Computer System Evaluation Criteria (TCSEC), frequently referred to as the Orange Book, is the centerpiece of the DoD Rainbow Series publications. It is a United States Government Department of Defense (DoD) standard that sets basic requirements for assessing the effectiveness of computer security controls built into a computer system. TCSEC was used to evaluate, classify and select computer systems being considered for the processing, storage and retrieval of sensitive or classified information. It was replaced with the development of the Common Criteria international standard originally published in 2005.

Answer option D is incorrect. An A-rated system is the highest security division.

Answer option B is incorrect. A C-rated system provides discretionary protection of the trusted computing base (TCB).


Contribute your Thoughts:

Currently there are no comments in this discussion, be the first to comment!


Save Cancel