Lesson 6 Definitions Flashcards

1
Q

Organizational culture

A

A set of values and ideas that reflect acceptable and unacceptable practices and behaviors within an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Cybersecurity culture

A

The combined organizational factors that put every employee in the position to behave in ways that support cybersecurity or ways that place the company at risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Institutionalization

A

The action of establishing something as a convention or norm in an organization or culture

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Governance

A

The policies, procedures and controls that are utilized by the OSC to assure sustainment and continual improvement with respect to detection, prevention, and response to cyber incidents

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Policy

A

An artifact or collection of artifacts that establishes governance over the implementation of CMMC practices and activities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Procedure

A

The documented details for how an activity is implemented to achieve a desired outcome. A procedure should provide enough detail for a trained individual to perform the activity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Plan

A

An artifact or collection of artifacts that provide oversight for implementing defined CMMC policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Gap Analysis

A

An evaluation that examines the organization’s processes ‘as performed’ to identify issues, impediments, and potential risks to sustained implementation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Evidence Validation

A

An evaluation that examines sufficiency of evidence presented by the OSC, ensuring it meets the intent and objectives of the control or practice

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Certification Assessment Readiness Review (CA-RR)

A

A preliminary but formal review to verify the OSC’s readiness for the Assessment against the identified Assessment planning parameters and Assessment scope

How well did you know this?
1
Not at all
2
3
4
5
Perfectly