CJCSM 6510.01B Cyber Incident Handling Program Flashcards
Federal agencies are required to have in place cyber incident handling mechanisms in accordance with which act?
FISMA
How many services does the Department of Defense require Tier II Computer Network Defense Service Providers (CDSPs) to provide?
3
Which program was developed by the Department of Defense to provide specific guidance for CC/S/A/FAs regarding the requirements for cyber incident handling and reporting?
Cyber Incident Handling Program
Joint Staff and CC/S/A/FAs will comply with DoD Cyber Incident Handling Program responsibilities in accordance with which reference?
CJCSI 6510.01
Which agency must Joint Staff and CC/S/A/FAs ensure that Tier II CNDSPs are registered with to provide CND services for CC/S/A/FA information networks and ISs?
DISA
Which command must Joint Staff and CC/S/A/FAs coordinate with on cyber incidents prior to taking action outside the Department of Defense?
USCYBERCOM
Which command directs the operation and defense of DoD information networks IAW the UCP?
USSTRATCOM
What must USSTRATCOM coordinate with on matters relating to the governance, secure operations, and defense of the IC networks?
IC-IRC
What directs the actions taken, within the Department of Defense, to protect, monitor, analyze, detect, and respond to unauthorized activity within DoD information networks and ISs?
CND
How many different tiers is the Department of Defense organized into to conduct CND?
3
Which tier provides DoD-wide CND operational direction or support to CC/S/A/FAs?
Tier 1
Which tier provides DoD component-wide CND operational direction or support?
Tier 2
Which tier provides local CND operational direction or support?
Tier 3
Which type of data gives the Department of Defense the ability to sense changes in DoD information networks?
AS&W
Which type of data gives the Department of Defense the ability to sense changes in adversary activities?
I&W
Which community investigates criminal activity and disseminates threat data that may pertain to domestic or foreign individuals and groups who constitute threats to the Department of Defense?
LE
Which CND response service identifies several critical elements of an incident to determine and characterize its possible effects on DoD information networks, operational missions, and other defense programs?
Cyber Incident Analysis
What ensures the acquisition and preservation of data required for tactical analysis, strategic analysis, and/or LE investigations?
Cyber Incident Response
What is the DoD system of record for lessons learned?
JLLIS
What is the primary vehicle for reporting and recording all cyber incidents and reportable events?
JIMS
Security classifications of cyber incidents are determined in accordance with which publication?
DoDI O-3600.02
How many different types of initial cyber incident reporting are there?
2
What is the minimum security requirement when sending emails reporting a cyber incident?
digital signature
What includes the coordinated and initial actions taken to protect the information network or IS from any further malicious activity and to acquire the data required for further analysis?
Preliminary response