Transcription of Technical guide to information security testing and …
{{id}} {{{paragraph}}}
Special Publication 800-115 Technical guide to information security testing and assessment Recommendations of the National Institute of Standards and Technology Karen Scarfone Murugiah Souppaya Amanda Cody Angela Orebaugh Technical guide to information security testing and assessment Recommendations of the National Institute of Standards and Technology Karen Scarfone Murugiah Souppaya Amanda Cody Angela Orebaugh NIST Special Publication 800-115 C O M P U T E R S E C U R I T YComputer security Division information Technology Laboratory National Institute of Standards and Technology Gaithersburg, MD 20899-8930 September 2008 Department of Commerce Carlos M. Gutierrez, Secretary National Institute of Standards and Technology Dr.
An information security assessment is the process of determining how effectively an entity being assessed (e.g., host, system, network, procedure, person—known as the assessment object) meets specific security objectives. Three types of assessment methods can be used to accomplish this—testing, examination, and interviewing.
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}