Study. uk . com
  1. Home
  2. All questions
  3. Question 254

CISSP study material · question 254 of 500

A team wants federal policy and planning obligations for key management rather than general best practice. Which part of NIST SP 800-57 should they read?

  1. Part 1 Revision 5, which consolidated all three parts.
  2. Part 2, which covers federal agency policy and planning obligations.
  3. Part 3, which covers cryptography already built into fielded products.
  4. Part 1, which covers general best practice and key types.
Show the answer

Answer: B. Part 2, which covers federal agency policy and planning obligations.

SP 800-57 has three parts: general practice and key types, federal policy and planning, and guidance on cryptography already built into fielded products.

Source: NIST SP 800-57 Part 1 Rev. 5 (NIST) — SP 800-57 Part 1 Rev. 5 > Abstract

Challenge yourself on this topic → Study as cards