Appendix S: Sample Accreditation Letter

In accordance with the provisions of the Acme Corporation Certification and Accreditation Program, after reviewing the security controls that have been implemented and planned and weighing the remaining residual risks against operational requirements, I authorize continued operation of the Apollo System under the provision that necessary corrective action is taken to address the following weaknesses

  • Lack of a documented agreement regarding the interconnection with the Ajax System
  • Failure to conduct contingency plan testing
  • Lack of separation of duties between those administering the system and personnel charged with managing security controls
  • Failure to identify a backup storage site that is more than ...

Get Official (ISC)2® Guide to the CAP® CBK®, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.