FIPS 199 is used to do what?

Prepare for the FISMA Interview Test. Get familiar with key topics and enhance your knowledge with flashcards and multiple-choice questions. Study effectively and be ready for your exam!

Multiple Choice

FIPS 199 is used to do what?

Explanation:
FIPS 199 focuses on security categorization of federal information systems. It provides a framework to identify what information and systems exist and to classify them based on the potential impact of a security breach across confidentiality, integrity, and availability. The result is a categorization into low, moderate, or high impact, which then drives the selection of appropriate security controls in later guidance. This is why it’s used to identify and categorize federal information systems. It isn’t about encryption standards (that’s the realm of FIPS 140-series), password requirements, or described access control models, which are covered in other standards and guidelines.

FIPS 199 focuses on security categorization of federal information systems. It provides a framework to identify what information and systems exist and to classify them based on the potential impact of a security breach across confidentiality, integrity, and availability. The result is a categorization into low, moderate, or high impact, which then drives the selection of appropriate security controls in later guidance. This is why it’s used to identify and categorize federal information systems. It isn’t about encryption standards (that’s the realm of FIPS 140-series), password requirements, or described access control models, which are covered in other standards and guidelines.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy