Regarding DoDM 5200.01M guidance and DISA's COMSEC equipment register, which statement is correct?

Study for the SFPC Information Security Exam. Use flashcards and multiple choice questions, each with hints and explanations. Prepare for your exam efficiently!

Multiple Choice

Regarding DoDM 5200.01M guidance and DISA's COMSEC equipment register, which statement is correct?

Explanation:
Maintaining accountability for COMSEC equipment hinges on aligning policy with the tool used to enforce it. DoDM 5200.01M provides the overarching information security requirements and governance for DoD assets, including how equipment should be safeguarded, inventoried, and audited. The DISA COMSEC equipment register is the formal inventory system used to record, track, and manage COMSEC hardware and crypto devices, giving a verifiable record for each item and its custodian. The statement attributed to Jo is the best fit because it correctly identifies the registry as the concrete mechanism that implements the policy in practice. DoDM 5200.01M tells you what must be protected and how to govern it; the COMSEC equipment register is how you actually demonstrate and verify that protection and accountability. A claim that another view is also correct would blur the distinction between policy and implementation or misstate which element performs the tracking. The registry is the tool that enforces the policy, not the policy document itself.

Maintaining accountability for COMSEC equipment hinges on aligning policy with the tool used to enforce it. DoDM 5200.01M provides the overarching information security requirements and governance for DoD assets, including how equipment should be safeguarded, inventoried, and audited. The DISA COMSEC equipment register is the formal inventory system used to record, track, and manage COMSEC hardware and crypto devices, giving a verifiable record for each item and its custodian.

The statement attributed to Jo is the best fit because it correctly identifies the registry as the concrete mechanism that implements the policy in practice. DoDM 5200.01M tells you what must be protected and how to govern it; the COMSEC equipment register is how you actually demonstrate and verify that protection and accountability.

A claim that another view is also correct would blur the distinction between policy and implementation or misstate which element performs the tracking. The registry is the tool that enforces the policy, not the policy document itself.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy