Name That Control!
Assessments
Capabilities
100

Specifies group and role membership 

What is AC-2.D

100

What are the four phases of an Assessment

What is Prepare>Develop Plans>Conduct the Assessment>Analyze Assessment?

100

We conduct this testing in case we have a disruption

What is Contingency Planning Testing?

200

Baseline configurations for systems and system components include connectivity, operational, and communications aspects of systems.  

What is CM-2

200
What are three assessment methods

What is Examine, Interview, Test?

300
Ends with -1

What is a Policy Control?

300

This chapter describes the process of assessing the security and privacy controls in organizational systems and environments of operation.

What is the Process

400

a secondary measure that is put in place when a primary control is not able to fully address a risk.

What is a compensating control

400

Policies, procedures, plans, specifications, designs, records, administrator/operator manuals, system documentation, information exchange agreements, previous assessment results

What are artifacts?

500

Protects the confidentiality and integrity of transmitted information for internal and external networks

What is SC-8

500

ATO Documents

SSP, SAR, POA&Ms