Two Short Answer Questions >200 words + any sources
1) The international standard for security (ISO 17799) documents a set of best practices for information systems security. List and briefly summarize the 10 major sections of the standard.
2) The NIST Special Publication 800-50 addresses Security Awareness Training. Discuss the four main areas presented by NIST and responsibilities of both management and security personnel.