ISC2 ISSEP Exam
Information Systems Security Engineering Professional (Page 7 )

Updated On: 1-Feb-2026

Which of the following are the phases of the Certification and Accreditation (C&A) process Each correct answer represents a complete solution. Choose two.

  1. Auditing
  2. Initiation
  3. Continuous Monitoring
  4. Detection

Answer(s): B,C



Which of the following phases of NIST SP 800-37 C&A methodology examines the residual risk for acceptability, and prepares the final security accreditation package

  1. Initiation
  2. Security Certification
  3. Continuous Monitoring
  4. Security Accreditation

Answer(s): D



Certification and Accreditation (C&A or CnA) is a process for implementing information security. Which of the following is the correct order of C&A phases in a DITSCAP assessment

  1. Definition, Validation, Verification, and Post Accreditation
  2. Verification, Definition, Validation, and Post Accreditation
  3. Verification, Validation, Definition, and Post Accreditation
  4. Definition, Verification, Validation, and Post Accreditation

Answer(s): D



Which of the following federal agencies has the objective to develop and promote measurement, standards, and technology to enhance productivity, facilitate trade, and improve the quality of life

  1. National Institute of Standards and Technology (NIST)
  2. National Security Agency (NSA)
  3. Committee on National Security Systems (CNSS)
  4. United States Congress

Answer(s): A



Fill in the blank with an appropriate phrase. The ____________ helps the customer understand and document the information management needs that support the business or mission.

  1. systems engineer

Answer(s): A



Viewing page 7 of 44
Viewing questions 31 - 35 out of 220 questions



Post your Comments and Discuss ISC2 ISSEP exam prep with other Community members:

Join the ISSEP Discussion