please see the attached file.

  1. Explain each of the three different ways to assess a security control and give an example of how each one is used.

  2. Explain the difference between a General Support System, Major Application, and a Minor Application and explain how you determine the accreditation boundary?

  3. Explain how to determine a System Security Categorization for a system and why is this important?

  4. Explain the process of how you determine the final version of the security controls for a system?

  5. Explain the 4 phases of assessing security controls. 

  6. List and explain the three reasons why FISMA were created for the Federal Government?