Posted by: cybercops911 | September 14, 2008

INSTRUCTIONS FOR USING THIS BLOG

Please do not post comments or questions in this post. This areas is for informational purposes only. Information Security and Information Systems Security Management are comprised of many different areas of responsibility. I have broken the areas of responsibilities into different posting categories. If you do not see the category of interest listed on the first page of the TopSecretProtection.Com Blog, scroll down to the bottom of the page and select Older Posts.

IMPORTANT NOTICE
Please do not attempt to post anything that is sensitive or classified information.

TO POST A COMMENT
1) Select The Area You Would Like To Post A Comment To. Example: Mobile Device Security
2) Click On Link That Says Comments.  Example: No Comments Yet or 2 Comments
3) In The Area Leave A Response, Fill In Your E-Mail Address And Your Name. You May Make An Anonymous Posting/Comment Using A Made Up Name And E-Mail.
4) Post Your Comment In The Area That Says Your Response.
5) Click On Submit comment Button
.

HOT POSTS / HOT TOPICS

DNI ISSUES NEW CERTIFICATION AND ACCREDITATION REQUIREMENTS FOR DEPARTMENT OF DEFENSE AND INTELLIGENCE COMMUNITY AGENCIES

On September 15, 2008, The Director Of National Intelligence (DNI) Issued New Requirements For Department Of Defense (DOD) And Intelligence Community (IC) Agencies To Follow For The Certification And Accreditation Of Information Systems.

This DNI Directive named ICD 503, signed September 15, 2008, rescinds and replaces the Director of Central Intelligence Directive (DCID) 6/3 Policy, Protecting Sensitive Compartmented Information within Information Systems, and the associated DCID 6/3 Manual having the same title. The ICD 503 becomes effective on September 15, 2008. Any new Information System placed into service after September 15, 2008, will need to be Certified and Accredited in accordance with National Institutes Of Standards And Technology (NIST) and the Committee on National Security Systems (CNSS) Standards, Policies and Guidelines.

DNI ICD 503 Overview

Click The Link To The Above For An Overview Of The New Requirements For The Certification And Accreditation Of Information Systems For The DOD And IC Agencies.

ISSPM Training Course Brochure

Click The Link To The Above For An Overview Of The Information Systems Security Program Management / Certification And Accreditation Training Course.

 

BEWARE OF HOTEL INTERNET CONNECTIONS
http://www.gcn.com/online/vol1_no1/47290-1.html

iOpus Private Internet Gateway (Free)

Using powerful 256-bit AES encryption technology, the iOpus Private Internet Gateway (iPIG) creates a secure “tunnel” that protects your inbound and outbound communications (Email, Web, IM, VOIP, calls, FTP, etc.) at any Wi-Fi hotspot or wired network.

iOpus Private Internet Gateway (iPIG) (Free)

Posted by: cybercops911 | September 14, 2008

INFORMATION SECURITY PROGRAM MANAGEMENT

Posted by: cybercops911 | September 14, 2008

FISMA / FEDERAL INFORMATION SECURITY MANAGEMENT ACT

Posted by: cybercops911 | September 14, 2008

NATIONAL SECURITY SYSTEMS / CLASSIFIED INFORMATION AND SYSTEMS

Posted by: cybercops911 | September 14, 2008

SECURITY CATEGORIZATION OF FEDERAL INFORMATION / INFORMATION SYSTEMS

Posted by: cybercops911 | September 14, 2008

SECURE CONFIGURATION OF INFORMATION SYSTEMS / APPLICATIONS

Posted by: cybercops911 | September 14, 2008

INTER-CONNECTING INFORMATION SYSTEMS

Posted by: cybercops911 | September 14, 2008

PII PROTECTION / PRIVACY IMPACT ASSESSMENTS

Posted by: cybercops911 | September 14, 2008

MOBILE DEVICE SECURITY

Posted by: cybercops911 | September 14, 2008

THREATS AND VULNERABILITIES

Posted by: cybercops911 | September 14, 2008

ELECTRONIC STORAGE MEDIA SANITIZING-DESTRUCTION

Posted by: cybercops911 | September 14, 2008

FEDERAL REGULATIONS AND GUIDANCE

Posted by: cybercops911 | September 14, 2008

CONTINUITY OF OPERATIONS PLANNIG / COOP

Posted by: cybercops911 | September 14, 2008

DOCUMENT SECURITY / HIDDEN DATA

Posted by: cybercops911 | September 14, 2008

COMPUTER SECURITY INCIDENT RESPONSE

Posted by: cybercops911 | September 14, 2008

INFORMATION SYSTEMS AUDITING / LOGGING

Posted by: cybercops911 | September 14, 2008

PLAN OF ACTION AND MILESTONES / POA&MS

Posted by: cybercops911 | September 14, 2008

IT SYSTEMS & NETWORKS CONFIGURATION MANAGEMENT

Posted by: cybercops911 | September 14, 2008

SECURITY VULNERABILITY TESTING OF INFORMATION SYSTEMS / NETWORKS

Posted by: cybercops911 | September 14, 2008

CERTIFICATION AND ACCREDITATION / C&A

Posted by: cybercops911 | September 14, 2008

RISK MANAGEMENT

Posted by: cybercops911 | September 14, 2008

PRIVILEGED USERS SECURITY REQUIREMENTS

Posted by: cybercops911 | September 14, 2008

GENERAL USERS SECURITY REQUIREMENTS

Posted by: cybercops911 | September 14, 2008

ACCESS CONTROL LIFECYCLE

Posted by: cybercops911 | September 14, 2008

INFORMATION SECURITY AWARENESS / EDUCATION / TRAINING

Posted by: cybercops911 | September 14, 2008

SECURITY POLICIES AND PROCEDURES

Posted by: cybercops911 | September 14, 2008

SECURITY SERVICES AND PRODUCT ACQUISITION

Older Posts »

Categories

Follow

Get every new post delivered to your Inbox.