Plan Information Systems Security Description Information systems security requirements shall be included as part of program and systems design activities to preserve integrity, availability, and confidentiality of critical program technology and information. System security requirements shall be established and maintained throughout the acquisition life-cycle for all programs, as applicable. File Owner: Ralph MacMillanOrganization: ODASD(C3) Email: unavailable Phone: (703) 693-6685 File Last Reviewed: Mar 98
Mandatory References DoD 5000.2-R, Mandatory Procedures for Major Defense Acquisition Programs (MDAPs)
and Major Automated Information System (MAIS) Acquisition Programs DoDD 5200.28; Security Requirements for Automated Information Systems (AISs); DoDD 8000.1; Defense Information Management (IM); Program; Air Force Mandatory References AFPD 14-3; Control, Protection, and Dissemination of Intelligence
Information; AFI 14-302; Intelligence; Control, Protection, and Dissemination of
Sensitive Compartmented Information; AFI 14-303; Release of Collateral Intelligence to US Contractors; AFPD 16-2; Operations Support; Disclosure of Military Information to
Foreign Governments and International Organizations; AFPD 31-2; Law Enforcement; AFPD 31-4; Information Security; Air Force Policy Directive 63-17; Technology and Acquisition Systems
Security Program Protection, AFI 31-401; Information Security Program Management AFI 31-501; Personnel Security Program Management; AFI 31-601; Industrial Security Program Management; AFI 31-701; Program Protection Planning; AFI 31-702; System Security Engineering; AFI 31-703; Product Security; AFPD 33-2; Information Protection; AFI 33-211; Communications Security (COMSEC); User Requirements; COMPUSEC References AFI 33-207, Computer Security Assistance Program AFI 65-403, Follow-up on Internal AF Audit Reports, AFPD 33-2, Information Protection, AFSSI 5021, Vulnerability and Incident Reporting, AFSSI 5024, Vol I, The Certification & Accreditation (C&A) Process AFSSI 5024, Vol II, The Certifying Official’s Handbook AFSSI 5024, Vol III, The Designated Approving Authorities Guide SATE References AFPD 33-2, Information Protection AFI 33-204, Information Protection Security Awareness, Training, and
Education (SATE) Program AFMC Sup 1 AFI 33-204, Information Protection, Security Awareness,
Training, and Education (SATE) Program COMSEC References AFKAG-1 (Air Force Communications Security [COMSEC] Operations) AFI 33-211; Communications Security (COMSEC); User Requirements; AFMC SUP to AFI 33-211, Communications Security (COMSEC) User Requirements AFI 33-212, Reporting COMSEC Deviations, AFI 33-217, Voice Call Sign Program, AFI 33-219, Telecommunications Monitoring and Assessment Program (TMAP), AFI 36-2201 Developing, Managing, and Conducting Training; AFKAO-1 (USAF Voice Callsign Instructions) AFKAI-1, USAF Voice Callsign Book AFJQS 491X1-211U (COMSEC Account Management) EMSEC References AFI 33-203, Emission Security
Command-Wide Practices: AFMC - Managing Information Assurance (IA) AFMC - Oversight of Communications Security (COMSEC) AFMC - Security Awareness, Training & Education (SATE)
Command-Wide Sample Format: AFMC - Strawman Network Security Plan AFMC - Strawman Security, Test, and Evaluation
DoD - DSS - Electronic Personnel Security Questionnaire (EPS
AcqNOW!
Subscribe | Web
Sites | Events
| Software
Tools Catalog
Last Updated: 23, September 2002 |