DOD 8570.01-M (WITH CHANGE-3), INFORMATION ASSURANCE WORKFORCE IMPROVEMENT PROGRAM Flashcards
Who is responsible for developing, coordinating, and publishing baseline certification requirements for personnel who perform specialized IA functions?
ASD (NII)/DoD CIO
How often at a minimum must the IA WIPAC meet?
Annually
Which office provides oversight to the IA WIPAC and IA baseline certification approval process?
Defense-wide Information Assurance Program (DIAP)
Who is required to serve as the DoD Shared Service Center (SSC) for the Office of Management and Budget (OMB)-directed Information System Security Line of Business (ISS LoB) for Tier I Awareness training?
Director of the Defense Information Systems Agency (DISA)
What manages the certification testing process requirement for the Department?
DANTES
The heads of the DoD Components must provide for the initial IA orientation and annual awareness training to all authorized users to ensure they know, understand, and can apply the IA requirements of their system(s) in accordance with which reference?
DoD Directive 8570.1
The heads of the DoD Components must obtain the appropriate background investigation per which reference prior to granting unsupervised privileged access or management responsibilities to any DoD system?
DoD Instruction 8500.2
Which training requirements must the heads of the DoD components ensure are met for personnel who perform IA functions on national security systems?
Committee on National Security Systems
Which functions focus on the development, operation, management, and enforcement of security capabilities for systems and networks?
Information Assurance (IA)
IA measures protect and defend information and information systems by ensuring their availability, integrity, authentication, confidentiality, along with what else?
Non-repudiation
What must be completed by personnel who hold privileged access?
Privileged Access Agreement
Personnel performing IA duties assess and implement identified corrections associated with technical vulnerabilities as part of which program?
Information Assurance Vulnerability Management (IAVM)
What are intended to produce IA personnel with a baseline understanding of the fundamental IA principles and practices related to the functions of their assigned position?
IA certification programs
DoD Components must use certifications approved by which office to meet the minimum IA baseline certification requirement?
ASD(NII)/DoD CIO
What provides DoD IA policy, training requirements, and DoD sponsored training to support IA professionals?
DoD IA Portal
Personnel IA certification status and renewal rates are management review items according to which reference?
DoD Instruction 8500.2
Within how many months of IA duty assignments must all military and Government civilian IAT personnel achieve the appropriate IA certification unless a waiver is granted?
6
How many years from the effective date of DoD 8570.01-M to DoD employees and contractors who perform IA functions have to comply with certification requirements?
4 (page 22)
What is the minimum certification level that is required prior to IA Managers authorizing unsupervised privileged access for personnel performing IAT Levels I through III functions?
IAT Level I
What is the maximum time that Designated Accrediting Authorities (DAAs) can issue certification requirement waivers for severe operational or personnel constraints?
6 months
Personnel who are not appropriately qualified within how many months of assignment to a position or who fail to maintain their certification status shall not be permitted privileged access?
6
Which positions are not authorized to be held by LNs or Foreign Nationals (FNs)?
IAT Level III
Which personnel provide Network Environment (NE) and advancement level CE support?
IAT Level II
How many years of experience do IAT Level II personnel typically have in IA technology or a related area?
3
Which personnel focus on the enclave environment and support, monitor, test, and troubleshoot hardware and software IA problems pertaining to the CE, NE, and enclave environments?
IAT Level III
How many years of experience do IAT Level III personnel typically have in IA technology or a related area?
7
Within how many months of assignment of IA duties must management category military and Government civilian personnel achieve the appropriate IA baseline certification for their level?
6
DAAs may waive certification requirements under severe operational or personnel constraints for a maximum of how many months?
6