Institute 2025/2026 Exam Questions and
Verified Answers | Already Graded A+
Primary NIST RMF Documents - 🧠 ANSWER ✔✔800-30, 800-37, 800-39,
800-53, 800-53A
RMF Tier 1 Risks - 🧠 ANSWER ✔✔(Organizational) Strategic, Governance,
Methodologies, Risk Tolerance
RMF Tier 2 Risks - 🧠 ANSWER ✔✔(Mission/Business Perspective)
Enterprise Architecture, Defining Core Missions, Subordinate Organization
limits
RMF Tier 3 Risks - 🧠 ANSWER ✔✔(Information System) Security Controls
CISO - 🧠 ANSWER ✔✔Chief Information Security Officer
,CCE - 🧠 ANSWER ✔✔Common Configuration Enumeration
CPE - 🧠 ANSWER ✔✔Common Platform Enumeration
CWE - 🧠 ANSWER ✔✔Common Weakness Enumeration
CVSS - 🧠 ANSWER ✔✔Common Vulnerability Scoring System
XCCDF - 🧠 ANSWER ✔✔Extensible Configuration Checklist Description
Format
OVAL - 🧠 ANSWER ✔✔Open Vulnerability Assessment Language
OCIL - 🧠 ANSWER ✔✔Open Checklist Interactive Language
NVD - 🧠 ANSWER ✔✔National Vulnerability Database
CVE - 🧠 ANSWER ✔✔Common Vulnerabilities and Exposures
E-Authentication Levels - 🧠 ANSWER ✔✔Level 1: no identity proofing
requirement
Level 2: single factor remote authentication
Level 3: multi-factor remote authentication
Level 4: multi-factor remote authentication; hard crypto tokens
, FISMA - 🧠 ANSWER ✔✔FISMA 2002 - Federal Information Security
Management Act; FISMA 2014 - Federal Information Security
Modernization Act
CNSS - 🧠 ANSWER ✔✔Committee on National Security Systems: Guides
assess, approves and oversees mitigating action of national security
systems
NISTIR - 🧠 ANSWER ✔✔NIST Interagency/Internal Report - Irregularly
published on special topics, transitory or limited interest items
Information System Boundaries - 🧠 ANSWER ✔✔- Establish scope of
protection for systems
- Established in coordination w/ security categorization process, before
developing security plans
CCA - 🧠 ANSWER ✔✔Clinger Cohen Act of 1996 aka Information
Technology Management Reform Act
- CIOs for all agencies
- CPIC/Capital Planning Investment Controls for IT $
- OMB OMB oversight of IT $
COPYRIGHT©PROFFKERRYMARTIN 2025/2026. YEAR PUBLISHED 2025. COMPANY REGISTRATION NUMBER: 619652435. TERMS OF USE.
PRIVACY STATEMENT. ALL RIGHTS RESERVED