Regarding DoDM 5200.01M guidance and DISA's COMSEC equipment register, which statement is correct?

Prepare for the SFPC Information Security Test with our comprehensive quiz. Study using flashcards and multiple choice questions with hints and explanations. Ensure you are ready for the exam!

Multiple Choice

Regarding DoDM 5200.01M guidance and DISA's COMSEC equipment register, which statement is correct?

Explanation:
Maintaining accountability for COMSEC equipment hinges on aligning policy with the tool used to enforce it. DoDM 5200.01M provides the overarching information security requirements and governance for DoD assets, including how equipment should be safeguarded, inventoried, and audited. The DISA COMSEC equipment register is the formal inventory system used to record, track, and manage COMSEC hardware and crypto devices, giving a verifiable record for each item and its custodian. The statement attributed to Jo is the best fit because it correctly identifies the registry as the concrete mechanism that implements the policy in practice. DoDM 5200.01M tells you what must be protected and how to govern it; the COMSEC equipment register is how you actually demonstrate and verify that protection and accountability. A claim that another view is also correct would blur the distinction between policy and implementation or misstate which element performs the tracking. The registry is the tool that enforces the policy, not the policy document itself.

Maintaining accountability for COMSEC equipment hinges on aligning policy with the tool used to enforce it. DoDM 5200.01M provides the overarching information security requirements and governance for DoD assets, including how equipment should be safeguarded, inventoried, and audited. The DISA COMSEC equipment register is the formal inventory system used to record, track, and manage COMSEC hardware and crypto devices, giving a verifiable record for each item and its custodian.

The statement attributed to Jo is the best fit because it correctly identifies the registry as the concrete mechanism that implements the policy in practice. DoDM 5200.01M tells you what must be protected and how to govern it; the COMSEC equipment register is how you actually demonstrate and verify that protection and accountability.

A claim that another view is also correct would blur the distinction between policy and implementation or misstate which element performs the tracking. The registry is the tool that enforces the policy, not the policy document itself.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy