DAAPM Controls
eMASS Artifacts
RMF Steps
Random
Mobiles
100

I require you to develop a POA&M for the IS.

What is CA-5 Plan of Actions & Milestones?

100

I am a contractual document that provides security requirements and classification guidance necessary to execute a specific classified contract.

What is a DD254?

100

This step requires choosing appropriate security controls?

What is Select?

100

I am home of the Whopper

What is Burger King?

100
Timeframe to avoid being considered "short notice".

What is 10 business days?

200

I require the review of audit records at least weekly.

What is AU-6  Audit Review, Analysis,, and Reporting.

200

I am a form completed by a collaborative effort that states which data and time frame of data to keep. 

What is the ISBA (IS Backup Agreement)?

200

This step requires the monitoring of selected controls?

What is Monitor?

200

I am the amount of stripes on the US flag?

What 13?

200

Responsible to complete the Mobile Processing Worksheet.

Who are Program Personnel?

300

I require ongoing security assessments and status monitoring of the IS.

What is CA-7  Continuous Monitoring

300

I show location and amount of devices on the IS?

What is a system diagram?

300

The second step of RMF?

What is Categorize?

300

I am the smallest country in the world.

What is the Vatican?

300

Approves the mobile request.

Who is DCSA?

400

I require the events defined in AU-2 be found in generated audits.

What is AU-12  Audit Generation?

400

I list all of the OS and applications on the IS?

What is the software baseline?

400

This step requires an objective review and report findings to leadership?

What is Assess?

400

My band name originally was called Kara's Flowers..

Who is Maroon 5?

400

Responsible to train alternate site ISSO (DISSO).

Who is the Sr. ISSO?

500

I require the organization to separate duty of system administrators rom audit administration function - AS FEASABLE

What is AC-5  Separation of duties?

500

I am the document that describes how data is handled?

What is the Collateral Data Transfer SOP?

500

The SSP, SAP and SAR are reviewed by the governing official.

What is Authorize?

500

To date, I am the most watched show on Netflix.

What is Stranger Things?

500

Not an approved shipping method for outside of the United States.

What is FedEx?
M
e
n
u