ISC2 Governance, Risk and Compliance (CGRC) Practice Question
While planning a new U.S. federal information system, you must define the confidentiality, integrity, and availability impact levels that will guide subsequent control selection. Which reference gives the official low, moderate, and high impact criteria you need for this categorization task?
ISO/IEC 27001, Information security management requirements
FIPS Publication 199, Standards for Security Categorization of Federal Information and Information Systems
NIST SP 800-34, Contingency Planning Guide for Federal Information Systems
The only publication that formally defines the low, moderate, and high impact values for confidentiality, integrity, and availability used when categorizing U.S. federal information and information systems is FIPS Publication 199. ISO/IEC 27001 outlines requirements for an information security management system but does not prescribe the specific impact values. NIST SP 800-34 focuses on contingency planning, and PCI DSS supplies controls for payment card data-neither establishes the CIA impact criteria required for federal security categorization.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is FIPS Publication 199?
Open an interactive chat with Bash
Why are confidentiality, integrity, and availability important in security categorization?
Open an interactive chat with Bash
How does FIPS 199 compare with NIST SP 800-34 or ISO/IEC 27001?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Scope of the System
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .