DISA ACAS TEST BANK 2026 SOLVED
QUESTIONS AND EXAM SCRIPT FULL
SOLUTION
▶ T/F
If your system is compliant, there is no way it can suffer a security breach..
Answer: False
▶ T/F
ACAS TASKORD 20-0020 FRAGO 2 clarifies that only DISA STIG Tenable
Audit files are to be used for configuration scanning in ACAS.. Answer:
True
▶ Choose the Tenable.sc Severity Level that corresponds to the Failed
Compliance result.
a. Critical
b. High
c. Medium
d. Low
e. Informational. Answer: High
▶ Per the ACAS Best Practices Guide, which of the following Tenable.sc
resources are proprietary formatted XML files that define how ACAS should
check for compliance with a specified STIG?
a. Credentials
b. Queries
c. Policies
d. Audit files. Answer: Audit files
▶ 2-4 T/F
, Asset lists are dynamically or statically generated lists of hosts or devices.
Answer: True
▶ Which type of asset list updates automatically when a scan runs and a
repository is updated? Select the best answer.
a. Static
b. DNS
c. Dynamic
d. LDAP. Answer: Dynamic
▶ What is a static asset list? Select the best answer.
a. A list that defines groups of machines that have common aspects
b. A list of IP addresses that requires user intervention in order to change
what defines them
c. A list of assets based on passive or active scan results
d. None of the above. Answer: A list of IP addresses that requires user
intervention in order to change what defines them
▶ What two ways can you add a dynamic asset list? Select the best
answer.
a. Use a template or create a set of rules
b. Use a scan policy or a template
c. Create a set of rules or a scan policy
d. Both B and C. Answer: Use a template or create a set of rules
▶ When you create dynamic asset list(s), which of the following occurs?
Select the best answer.
a. Tenable.sc runs a scan to find assets that match the dynamic asset list's
rules.
b. Tenable.sc queries the repository(ies) to find assets that match the
dynamic asset list's rules. Answer: Tenable.sc queries the repository(ies)
to find assets that match the dynamic asset list's rules
▶ T/F
Users in different groups using the same shared asset list could see
different IP addresses in the list.. Answer: True
QUESTIONS AND EXAM SCRIPT FULL
SOLUTION
▶ T/F
If your system is compliant, there is no way it can suffer a security breach..
Answer: False
▶ T/F
ACAS TASKORD 20-0020 FRAGO 2 clarifies that only DISA STIG Tenable
Audit files are to be used for configuration scanning in ACAS.. Answer:
True
▶ Choose the Tenable.sc Severity Level that corresponds to the Failed
Compliance result.
a. Critical
b. High
c. Medium
d. Low
e. Informational. Answer: High
▶ Per the ACAS Best Practices Guide, which of the following Tenable.sc
resources are proprietary formatted XML files that define how ACAS should
check for compliance with a specified STIG?
a. Credentials
b. Queries
c. Policies
d. Audit files. Answer: Audit files
▶ 2-4 T/F
, Asset lists are dynamically or statically generated lists of hosts or devices.
Answer: True
▶ Which type of asset list updates automatically when a scan runs and a
repository is updated? Select the best answer.
a. Static
b. DNS
c. Dynamic
d. LDAP. Answer: Dynamic
▶ What is a static asset list? Select the best answer.
a. A list that defines groups of machines that have common aspects
b. A list of IP addresses that requires user intervention in order to change
what defines them
c. A list of assets based on passive or active scan results
d. None of the above. Answer: A list of IP addresses that requires user
intervention in order to change what defines them
▶ What two ways can you add a dynamic asset list? Select the best
answer.
a. Use a template or create a set of rules
b. Use a scan policy or a template
c. Create a set of rules or a scan policy
d. Both B and C. Answer: Use a template or create a set of rules
▶ When you create dynamic asset list(s), which of the following occurs?
Select the best answer.
a. Tenable.sc runs a scan to find assets that match the dynamic asset list's
rules.
b. Tenable.sc queries the repository(ies) to find assets that match the
dynamic asset list's rules. Answer: Tenable.sc queries the repository(ies)
to find assets that match the dynamic asset list's rules
▶ T/F
Users in different groups using the same shared asset list could see
different IP addresses in the list.. Answer: True