Information Systems Security And Assurance
Post a detailed response of 250 words to each questions
 
1. Explain the various scans to be performed prior to a security audit of an IT system? Please provide 6 different examples and explain how the scanning tools are used.
2. Explain the purpose for establishing system baselines and how often should these baselines be updated?
3. Explain in detail the elements which make up the RMF. Explain when each is utilized.
4. Explain why continuous monitoring is necessary and how does it relate to situational awareness?
5. Explain why a security plan is necessary and provide details of when the security plan ought to be updated and reviewed?
6. Explain why change management and change configuration are vitally important and how would these affect the security plan?