CompTIA Security+ Exam Prep

Category - Engineering

What was the first attempt at establishing a single standard for evaluating security attributes of computer systems and products by many European countries?
  1. Trusted Computer System Evaluation Criteria
  2. Information Technology Security Evaluation Criteria
  3. Both A and B
  4. Neither A nor B
Explanation
Answer: B - The Information Technology Security Evaluation Criteria (ITSEC) was the first attempt at establishing a single standard for evaluating security attributes of computer systems and products by many European countries. This was to evaluate two main attributes of a system’s protection mechanisms: functionality and assurance. When the functionality of a system’s protection mechanisms are being evaluated, the services that are provided to the subjects are examined and measured. Protection mechanism functionality can be very diverse in nature because systems are developed differently just to provide different functionality to users. Assurance is the degree of confidence in the protection mechanisms and their effectiveness and capability to perform consistently. Assurance is generally tested by examining development practices, documentation, configuration management, and testing mechanisms.
Was this helpful? Upvote!
Login to contribute your own answer or details

Top questions

Related questions

Most popular on PracticeQuiz