🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 4 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your agency is building a new analytics workload in AWS and must comply with NIST SP 800-37 Rev. 2. The team has finished categorizing the information system and documented its security impact levels. Before provisioning any AWS resources, they need to decide which AWS native security services and NIST SP 800-53 control baselines will satisfy the required protections. According to the NIST Risk Management Framework, which step comes next?

  • Select the appropriate security controls and map them to AWS services, documenting the control baseline in the system security plan.

  • Implement the selected controls by configuring AWS services and deploying required technical safeguards.

  • Continuously monitor the controls in production and provide status reports to the Authorizing Official.

  • Assess the implemented controls to verify they are operating as intended and identify residual risks.

ISC2 Systems Security Certified Practitioner (SSCP)
Risk Identification, Monitoring and Analysis
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot