ISC Exam Questions

Which of the following places the Orange Book classific…

Which of the following places the Orange Book classifications in order from MOST secure to LEAST secure?

A.
A, B, C, D

B.
D, C, B, A

C.
D, B, A, C

D.
C, D, B, A

Explanation:
The U.S. Department of Defense developed the Trusted Computer System Evaluation Criteria (TCSEC), which
was used to evaluate operating systems, applications, and different products. These evaluation criteria are
published in a book known as the Orange Book.
TCSEC provides a classification system that is divided into hierarchical divisions of assurance levels:
A:
Verified protection
B:
Mandatory protection
C:
Discretionary protection
D:
Minimal security
Classification A represents the highest level of assurance, and D represents the lowest level of assurance.
Incorrect Answers:
B: Classification A represents the highest level of assurance, and D represents the lowest level of assurance.
C: Classification A represents the highest level of assurance, and D represents the lowest level of assurance.
D: Classification A represents the highest level of assurance, and D represents the lowest level of assurance.

Harris, Shon, All In One CISSP Exam Guide, 6th Edition, McGraw-Hill, New York, 2013, pp. 392-393