Want to pass your Certified Secure Software Lifecycle Professional (CSSLP) CSSLP exam in the very first attempt? Try Pass2lead! It is equally effective for both starters and IT professionals.
VCE
Security Test and Evaluation (STandE) is a component of risk assessment. It is useful in discovering system vulnerabilities. For what purposes is STandE used? Each correct answer represents a complete solution. Choose all that apply.
A. To implement the design of system architecture
B. To determine the adequacy of security mechanisms, assurances, and other properties to enforce the security policy
C. To assess the degree of consistency between the system documentation and its implementation
D. To uncover design, implementation, and operational flaws that may allow the violation of security policy
Which of the following fields of management focuses on establishing and maintaining consistency of a system's or product's performance and its functional and physical attributes with its requirements, design, and operational information throughout its life?
A. Configuration management
B. Risk management
C. Change management
D. Procurement management
Fill in the blank with an appropriate phrase The is a formal state transition system of computer security policy that describes a set of access control rules designed to ensure data integrity.
A. Biba model