Question 57
Main Page
In evaluating NIST SP 800-37, which phase would require creating a Plan of Actions and Milestones (POAM)?
A. Categorize
B. Authorize
C. Select controls
D. Monitor
Answer: B. Authorize
The authorization phase results in formal approval and includes documentation of known control weaknesses in a POAM.