A test is

the process of exercising a product to identify differences between expected and actual behavior.[1]

A test is a

type of assessment method that is characterized by the process of exercising one or more assessment objects under specified conditions to compare actual with expected behavior, the results of which are used to support the determination of security control effectiveness over time.[2]

  1. Year 2000 Computing Crisis: An Assessment Guide, at 32.
  2. NIST Special Publication 800-53.

