Comparing and Implementing DIACAP and DITSCAP
Instructor: Don Wright
DIACAP: Department of Defense Information Assurance Certification and
Accreditation Process
DITSCAP: Department of Defense Information Technology Security Certification and Accreditation Process
DODI 8500.2 - Information Assurance Implementation
AR 25-2 - Information Assurance
Description :
Whether you're new to the DoD Certification and Accreditation (C&A) process or an experienced Information Assurance (IA) professional, the DIACAP is a major departure from the methodology and implementation processes required to perform C&A under the DITSCAP.
Take your knowledge of DoD C&A to the next level with this course focused on first, the differences between DITSCAP and DIACAP but primarily on the requirements and how to's of Certifying and Accrediting systems under the new DIACAP.
Knowledge gained from this course will prepare you to knowledgably determine requirements for system C&A as well as efficiently implement C&A under the DIACAP.
By completing this course on DIACAP, you will be prepared for any certification credential programs that DoD C&A is or will be part of.
This is a lecture-based class that will provide all necessary DoD written DIACAP guidance and supporting materials in addition to the custom-developed content.
Overview: DITSCAP DIACAP Comparison and DIACAP Implementation
Section 1 – Information Assurance Regulations
Objective: To provide an overview of the Information Assurance (IA) regulations as they relate to DoD C&A.
U.S. National Policy and Legislation
• FISMA
• OMB A-130
• NIST Special Publications
• FIPS Standards
• CNSS/NSTISSP Issuances
Department of Defense (DoD) and Department of the Army (DA) IA regulations
• Introduction
• DOD Directive 8100.1 - Global Information Grid (GIG) Overarching Policy
• DOD Directive 8500.1 – Information Assurance
• DODI 8500.2 -
• DOD 8510.1-M – DITSCAP Implementation Manual
• DoDI 8510.BB – Interim Department of Defense (DoD) Certification and Accreditation (C&A) Process Guidance
• AR 25-2
Section 2 – DoD Information Systems Information Assurance(IA) Certification and Accreditation Comparison (DITSCAP vs. DIACAP)
• Objective: Identify the differences and similarities between DITSCAP and DIACAP IA Certification & Accreditation (C&A.)
The DITSCAP C&A process
• Definitions
• Methodologies
• Roles and Responsibilities
• C&A requirements
• Implementation
The DIACAP C&A process
• Definitions
• Methodologies
• Roles and Responsibilities
• C&A requirements
• Implementation
Similarities
• C&A Requirements
• Products
• Recurring requirements
Differences
• The process and methodologies
• Definitions
• Roles and Responsibilities
• C&A requirements
• Implementation
Section 3 – Applying the DIACAP C&A process
Objective: Identify the requirements, define the steps, and explain the process to accomplish system C&A using DIACAP
• The process flow
• Specific steps in the C&A process
• Responsibilities
• Products
• Recurring requirements