Which U.S. federal law established the requirement for federal agencies to develop, document, and implement an information security program, and made NIST responsible for developing security standards and guidelines?
-
A
The Computer Fraud and Abuse Act (CFAA) of 1986
-
B
The Federal Information Security Management Act (FISMA) of 2002
-
C
The Sarbanes-Oxley Act (SOX) of 2002
-
D
The Gramm-Leach-Bliley Act (GLBA) of 1999