Who is described as the leading C&A agency?

Prepare for the FISMA Interview Test. Get familiar with key topics and enhance your knowledge with flashcards and multiple-choice questions. Study effectively and be ready for your exam!

Multiple Choice

Who is described as the leading C&A agency?

Explanation:
This item tests which agency provides the Certification and Accreditation framework used under FISMA. NIST is the lead here because it publishes the Risk Management Framework (RMF) and the related security control guidance (such as SP 800-37 and SP 800-53). These documents define how federal information systems are evaluated, granted an Authority to Operate, and continuously monitored. NSA focuses on information assurance in a defense context but does not set the C&A framework; DHS oversees national cybersecurity and incident response but does not author the C&A standards; GAO audits and evaluates programs rather than providing the standard framework. So the best answer is NIST.

This item tests which agency provides the Certification and Accreditation framework used under FISMA. NIST is the lead here because it publishes the Risk Management Framework (RMF) and the related security control guidance (such as SP 800-37 and SP 800-53). These documents define how federal information systems are evaluated, granted an Authority to Operate, and continuously monitored. NSA focuses on information assurance in a defense context but does not set the C&A framework; DHS oversees national cybersecurity and incident response but does not author the C&A standards; GAO audits and evaluates programs rather than providing the standard framework. So the best answer is NIST.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy