Study. uk . com
  1. Home
  2. All questions
  3. Question 226

CISSP study material · question 226 of 500

Which three of the following are among the requirement areas FIPS 140-3 covers for a cryptographic module? Choose three.

  1. Non-invasive security.
  2. Life-cycle assurance.
  3. Sensitive security parameter management.
  4. Business continuity planning for the vendor.
Show the answer

Answer: B. Life-cycle assurance.
C. Sensitive security parameter management.
A. Non-invasive security.

The standard's eleven areas run from module specification through interfaces, roles, software integrity, environment and physical protection to self-tests and assurance across the life cycle.

Source: NIST FIPS 140-3 (NIST) — FIPS 140-3 > 3. Explanation

Challenge yourself on this topic → Study as cards