Certification and Accreditation (C&A or CnA) is a process for implementing information security. It is a systematic procedure for evaluating, describing, testing, and authorizing systems prior to or after a system is in operation. Which of the following statements are true about Certification and Accreditation? Each correct answer represents a complete solution. Choose two.
A) Certification is a comprehensive assessment of the management, operational, and technical security controls in an information system.
B) Accreditation is a comprehensive assessment of the management, operational, and technical security controls in an information system.
C) Certification is the official management decision given by a senior agency official to authorize operation of an information system.
D) Accreditation is the official management decision given by a senior agency official to authorize operation of an information system.
Correct Answer:
Verified
Q263: Wendy is about to perform qualitative risk
Q264: Frank is the project manager of the
Q265: You are the project manager of the
Q266: You work as a project manager for
Q267: Which of the following requires all general
Q269: Information risk management (IRM) is the process
Q270: Which of the following techniques are used
Q271: You are the project manager of the
Q272: You are the project manager of the
Q273: Rob is the project manager of the
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents