An organization plans to establish a direct network link with a key business partner to facilitate automated data synchronization. Before enabling the connection, the security team must document the specific technical security controls, interface configurations, and encryption standards governing the direct link. Which of the following agreements should be established to define these technical parameters?
- Interconnection Security Agreement (ISA)Answer
- BMemorandum of Understanding (MOU)
- CBusiness Partners Agreement (BPA)
- DService Level Agreement (SLA)
Answer
Interconnection Security Agreement (ISA)
An Interconnection Security Agreement (ISA) specifies the technical and security requirements for establishing a dedicated connection between two distinct organizations' networks, including protocol requirements, encryption, and security boundaries.
Step-by-Step Solution
Key Concept
Interconnection Security Agreement (ISA) for Third-Party Risk Management