Documents Flashcards

1
Q

SSP

A

System Security Plan

Bible of system

Provides purpose of system

Impact level and types of controls needed to be implemented

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

SAP

A

Security Assessment Plan

Provides purpose of Assessment
Purpose of system
Roles and responsibilities
Deadlines
Types of controls
Previous poam
Rbd (risk based decision)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

SAR

A

Security Assessment Report

Purpose of Assessment/system
Methodology of Assessment
Controls that failed and recommendations
Previous poams (open/closed)
Rbd

How well did you know this?
1
Not at all
2
3
4
5
Perfectly