โ† All CAP Flashcard Decks

Continuous Monitoring and System Lifecycle Flashcards

6 cards from real CAP practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 Continuous Monitoring and System Lifecycle flashcards as text
  1. What is the primary goal of an Information Security Continuous Monitoring (ISCM) program?

    Answer: To maintain ongoing awareness of information security, vulnerabilities, and threats

    ISCM maintains situational awareness of the security posture so organizations can make risk-based decisions in a timely manner.

  2. NIST SP 800-137 provides guidance on which topic?

    Answer: Information Security Continuous Monitoring (ISCM) for federal systems

    NIST SP 800-137 provides guidance for developing an ISCM strategy and program for federal information systems and organizations.

  3. In the context of continuous monitoring, what is a 'security metric'?

    Answer: A quantifiable measure used to assess the effectiveness of security controls over time

    Security metrics provide measurable data on control effectiveness, enabling organizations to track trends and make informed risk decisions.

  4. How does continuous monitoring support the RMF Monitor step?

    Answer: It provides ongoing data to ensure controls remain effective and risks are within acceptable levels

    Continuous monitoring feeds ongoing assurance to the AO that the system's security posture remains acceptable between formal re-authorizations.

  5. Which tool is commonly used in US federal agencies to automate continuous monitoring data collection?

    Answer: Continuous Diagnostics and Mitigation (CDM) Dashboard

    CISA's CDM program provides federal agencies with tools, integration services, and a dashboard to automate continuous monitoring.

  6. Under an ongoing authorization approach, how often must a full re-authorization be conducted?

    Answer: When risk exceeds defined thresholds rather than on a fixed schedule

    Ongoing authorization uses continuous monitoring to maintain a current security posture, triggering re-authorization based on risk events rather than time.