DOD 8570.01-M (W/ CHANGE-3), IAWF CH. 1-11 Flashcards

1
Q

Within how many months of IA duty assignments must all military and Government civilian IAT
personnel achieve the appropriate IA certification unless a waiver is granted?

A

6

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How many years from the effective date of DoD 8570.01-M to DoD employees and contractors who
perform IA functions have to comply with certification requirements?

A

4

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the minimum certification level that is required prior to IA Managers authorizing unsupervised
privileged access for personnel performing IAT Levels I through III functions?

A

IAT Level I

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the maximum time that Designated Accrediting Authorities (DAAs) can issue certification
requirement waivers for severe operational or personnel constraints?

A

6 Months

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Personnel who are not appropriately qualified within how many months of assignment to a position or
who fail to maintain their certification status shall not be permitted privileged access?

A

6

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which positions are not authorized to be held by LNs or Foreign Nationals (FNs)?

A

IAT Level III

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which personnel provide Network Environment (NE) and advanced level CE support?

A

IAT Level II

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How many years of experience do IAT Level II personnel typically have in IA technology or a related
area?

A

3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which personnel focus on the enclave environment and support, monitor, test, and troubleshoot
hardware and software IA problems pertaining to the CE, NE, and enclave environments?

A

IAT Level III

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How many years of experience do IAT Level III personnel typically have in IA technology or a related
area?

A

7

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Within how many months of assignment of IA duties must management category military and
Government civilian personnel achieve the appropriate IA baseline certification for their level?

A

6

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q
  1. DAAs may waive certification requirements under severe operational or personnel constraints for a
    maximum of how many months?
A

6

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Personnel in management category positions will retain an appointing letter assigning them IA
responsibilities for their systems per which reference?

A

DoD Instruction 8500.2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which IAM positions may not be assigned to LNs or FNs?

A

IAM Level III

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which personnel are responsible for the implementation and operation of a DoD IS or system DoD
Component within their CE?

A

IAM Level I

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which personnel are responsible for the IA program of an IS within the NE?

A

IAM Level II

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

How many years of management experience do IAM Level II’s usually have?

A

5

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Which personnel are responsible for ensuring all enclave IS are functional and secure?

A

IAM Level III

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

How many years of management experience do IAM Level III’s usually have?

A

10

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Which reference directs that a DAA be appointed for each DoD information system operating within, or
on behalf of, the Department of Defense?

A

DoD Directive 8500.1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Who is the official that has the authority to formally assume responsibility for operating a system at an
acceptable level of risk?

A

DAA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Each assigned DAA must complete the DoD DAA CBT or WBT product within how many days of
assignment to the position?

A

60

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

How often must each assigned DAA recertify in the DISA DAA Certification course?

A

Every 3 years

24
Q
  1. Who is the first and most vital line of defense for securing DoD information and systems?
A

User

25
Q

Which CBT presented by DISA meets all DoD level requirements for end user awareness training?

A

DoD IA Awareness

26
Q

What are the DoD Components required to use as their IA Awareness Provider?

A

DoD SSC

27
Q

How often must personnel take IA awareness refresher training to retain access?

A

Annually

28
Q

IA workforce data elements must comply with requirements established in which reference?

A

DoD Instruction 8500.2

29
Q

All positions in the 2210 or other civilian IA job series must comply with what guidance on standardized
titling?

A

Office of Peronnel Management (OPM)

30
Q

What must be used as the Position Specialty Code (PSC) in the Defense Civilian Personnel Data System
for all DoD civilian positions and personnel with IA functions regardless of OPM series or job title?

A

INFOSEC

31
Q

What allows identification of a DoD civilian position with IA functions regardless of OPM series or job
title?

A

Position Specialty Code (PSC)

32
Q

What is used to consolidate IA qualification and workforce management reporting requirements?

A

IA WIP Annual Report

33
Q

Who coordinates IA Training and Certification Program requirements?

A

ASD(NII)/DoD CIO

34
Q

What includes all individuals working for the Department of Defense in a foreign country who are
nationals or non-U.S. residents of that country?

A

LN

35
Q

Within how many months of assignment of IA duties must IASAE specialty military and Government
civilian personnel achieve the appropriate IA baseline certification for their level?

A

6

36
Q

How many years after the effective date of DoD 8570.01-M do DoD employees and contractors
performing IA functions have to comply with the certification requirements?

A

4

37
Q

Waivers issued by DAAs to waive certification requirements when there are severe operational or
personnel constraints cannot be extended beyond how many months?

A

6

38
Q

Personnel in IASAE specialty positions will retain an appointing letter assigning them IA responsibilities
for their system(s) in accordance with which reference?

A

DoD Instruction 8500.2

39
Q

Which positions may not be held by LNs or FNs?

A

IASAE Level III

40
Q

Which personnel are responsible for the design, development, implementation, and/or integration of a
DoD IA architecture, system, or system component for use within their CE?

A

IASAE Level I

41
Q

Which personnel are responsible for the design, development, implementation, and/or integration of a
DoD IA architecture, system, or system component for use within the NE?

A

IASAE Level II

42
Q

How many years of experience do IASAE Level II personnel usually have?

A

5

43
Q
  1. Which positions are responsible for the design, development, implementation, and/or integration of a
    DoD IA architecture, system, or system component for use within CE, NE, and enclave environments?
A

IASE Level III

44
Q

How many years of experience do IASAE Level III personnel usually have?

A

10

45
Q

What is the normal sustainment training/continuing education required over 3 years to maintain
certification status for planning purposes?

A

120 hours

46
Q

Within how many months of assignment to an accredited CND-SP position must all CND-SP specialty
military and Government civilian personnel achieve the appropriate CND certification?

A

6

47
Q

What has the authority to waive certification requirements under severe operational or personnel
constraints?

A

USSTRATCOM

48
Q

Which personnel use collected data from a variety of CND tools to analyze events that occur within their
environment?

A

CND-A

49
Q

How many years of minimum experience in CND technology or a related field is recommended for
CND-A personnel?

A

2

50
Q

Which personnel test, implement, deploy, maintain, and administer infrastructure systems?

A

CND-IS

51
Q

How many years of minimum experience in supporting CND and/or network systems and technology is
recommended for CND-IS personnel?

A

4

52
Q

Who do CND-IS personnel work under and typically report to?

A

CND-SPM

53
Q

Which personnel investigate and analyze all response activities related to cyber incidents within the NE
or Enclave?

A

CND-IR

54
Q

How many years of minimum experience in CND technology or a related field is recommended for
CND-IR personnel?

A

5

55
Q

Which personnel perform assessments of systems and networks within the NE or enclave and identify
where those systems/networks deviate from acceptable configurations, enclave policy, or local policy?

A

CND-AU

56
Q

Which personnel are responsible for producing guidance for their NE or enclave, assisting with risk
assessments and risk management for organizations within their NE or enclave, and are responsible for

managing the technical classifications within their organization?

A

CND-SPM