Chapter 8

Assessment Methods

Abstract

Actual assessment methods and techniques are discussed including definitions for the various types used in reviews such as interviews, observations, document review, and both manual testing and automated testing efforts.

Keywords

assessment techniques
interview
examine
test
depth
coverage
Now we reach the actual assessment actions part of this book. This chapter opens the window on the process of assessing, testing, and evaluating the system or application. The NIST guidance provides a path through the evaluation process utilizing test objectives with one or more of the associated defined test methods to be applied toward the test objects under review. It has been my experience in performing these RMF-based ...

Get Security Controls Evaluation, Testing, and Assessment Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.