what is assessment

Assessment—(1) An effort to gain insight into system capabilities and limitations. May be conducted in
many ways including a paper analysis, laboratory type testing, or even through limited testing
with operationally representative users and equipment in an operational environment. Not
sufficiently rigorous in and of itself to allow a determination of effectiveness and suitability to be
made for purposes of operational testing. (2) Surveys and Inspections; an analysis of the
vulnerabilities of an AIS. Information acquisition and review process designed to assist a
customer to determine how best to use resources to protect information in systems.