โ† All CAP Flashcard Decks

Federal Compliance and Regulatory Requirements Flashcards

6 cards from real CAP practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 Federal Compliance and Regulatory Requirements flashcards as text
  1. Which federal law established the modern framework for federal information security and was significantly updated in 2014?

    Answer: Federal Information Security Modernization Act (FISMA)

    FISMA 2014 updated the original 2002 law to strengthen DHS's role, require automated monitoring, and improve incident reporting.

  2. Which federal agency is responsible for issuing FIPS publications that federal agencies must comply with?

    Answer: NIST

    The National Institute of Standards and Technology (NIST) issues Federal Information Processing Standards (FIPS) publications.

  3. OMB Circular A-130 provides federal policy guidance on which broad area?

    Answer: Managing federal information resources, including IT security and privacy

    OMB Circular A-130 establishes federal policy for managing information resources, including requirements for information security and privacy.

  4. Which federal privacy law gives US citizens the right to access and correct records held by federal agencies?

    Answer: Privacy Act of 1974

    The Privacy Act of 1974 governs federal agency collection, maintenance, use, and dissemination of personally identifiable information.

  5. Executive Order 13800 directed federal agencies to take what primary action regarding cybersecurity risk?

    Answer: Use the NIST Cybersecurity Framework to manage institutional risk

    EO 13800 required agency heads to use the NIST Cybersecurity Framework to manage cybersecurity risk as part of enterprise risk management.

  6. Under FISMA, which office provides policy guidance and oversight for federal information security programs?

    Answer: OMB

    The Office of Management and Budget (OMB) issues policy guidance and oversees federal agency compliance with FISMA requirements.