PrepAway - Latest Free Exam Questions & Answers

Which of the following is not an Orange book-defined life cycle assurance requirement?

Which of the following is not an Orange book-defined life cycle assurance requirement?

PrepAway - Latest Free Exam Questions & Answers

A.
Security testing

B.
Design specification and testing

C.
Trusted distribution

D.
System integrity

Explanation:
Systems Integrity is a part of operational assurance opposed to life cycle assurance.
“The operational assurance requirements specified in the Orange Book are as follows:
System Architecture
System integrity
Covert channel analysis
Trusted facility management
Trusted recovery
The life cycle assurance requirements specified in the Orange Book are as follows:
Security testing
Design specification and testing
Configuration Management
Trusted Distribution”
Pg. 301 Krutz: The CISSP Prep Guide: Gold Edition.


Leave a Reply