Systems Security Certified Practitioner – SSCP – Question0137

Which division of the Orange Book deals with discretionary protection (need-to-know)?

A.
D
B. C
C. B
D. A

Correct Answer: B

Explanation:

C deals with discretionary protection. See matric below:

TCSEC Matric
The following are incorrect answers:
D is incorrect. D deals with minimal security. B is incorrect. B deals with mandatory protection. A is incorrect. A deals with verified protection. Reference(s) used for this question: CBK, p. 329 – 330 and Shon Harris, CISSP All In One (AIO), 6th Edition , page 392-393