DOD Operations Security (OPSEC) 1 — Questions and Answers
Question 1: What is the primary purpose of Operations Security (OPSEC) in the DOD?
- To encrypt classified communications between units
- To deny adversaries critical information that could be used against friendly operations (Correct answer)
- To conduct background investigations on all personnel
- To establish physical perimeters around military installations
Correct answer: To deny adversaries critical information that could be used against friendly operations
OPSEC denies adversaries critical information about friendly operations, capabilities, and intentions that could be exploited.
Question 2: Which of the following best defines 'Critical Information' in the OPSEC process?
- All information stored on classified government networks
- Any information that has been marked SECRET or higher
- Specific facts about friendly intentions, capabilities, or activities that adversaries need to harm operations (Correct answer)
- Personnel records and medical information for DOD employees
Correct answer: Specific facts about friendly intentions, capabilities, or activities that adversaries need to harm operations
Critical Information is specific data an adversary needs to prevent mission success or cause unacceptable harm, regardless of classification level.
Question 3: How many steps are in the standard DOD OPSEC process?
- 3
- 4
- 5 (Correct answer)
- 7
Correct answer: 5
The DOD OPSEC process consists of five steps: identify critical information, analyze threats, analyze vulnerabilities, assess risk, and apply countermeasures.
Question 4: What is an OPSEC 'indicator' as defined in DOD doctrine?
- A formal report submitted after a security breach
- Observable actions or information that can be pieced together by an adversary to deduce critical information (Correct answer)
- A classified marking applied to sensitive documents
- A warning signal issued by a commander before an operation
Correct answer: Observable actions or information that can be pieced together by an adversary to deduce critical information
An OPSEC indicator is observable friendly actions or open-source information that can be interpreted by adversaries to derive critical information.
Question 5: Which DOD directive provides the foundational policy for the OPSEC program?
- DODD 5205.02 (Correct answer)
- DODD 8570.01
- DODD 5200.01
- DODD 3025.18
Correct answer: DODD 5205.02
DODD 5205.02 establishes DOD OPSEC policy and assigns responsibilities for implementing OPSEC programs across the department.
Question 6: In the OPSEC process, what does 'threat analysis' involve?
- Auditing computer systems for malware and vulnerabilities
- Identifying and studying adversaries who have the capability and intent to collect critical information (Correct answer)
- Reviewing personnel security clearances for all unit members
- Assessing the physical security of classified storage areas
Correct answer: Identifying and studying adversaries who have the capability and intent to collect critical information
Threat analysis identifies adversaries and evaluates their intelligence collection capabilities and intent to exploit critical information.
Question 7: Which of the following is an example of an OPSEC countermeasure?
- Publishing operational schedules on a public military website
- Discussing unit movements in open social media posts
- Changing routine patterns and schedules to prevent predictability (Correct answer)
- Using personal email accounts to coordinate military operations
Correct answer: Changing routine patterns and schedules to prevent predictability
Changing routine patterns is an OPSEC countermeasure that reduces predictability and denies adversaries the ability to detect indicators.
What is the primary purpose of Operations Security (OPSEC) in the DOD?