SECRETARY OF THE ARMY WASHINGTON

Similar documents
S E C R E T A R Y O F T H E A R M Y W A S H I N G T O N

SUBJECT: Army Directive (Global Cultural Knowledge Network)

SUBJECT: Army Directive (Implementation of the Army Human Capital Big Data Strategy)

DEPARTMENT OF THE NAVY INSIDER THREAT PROGRAM. (1) References (2) DON Insider Threat Program Senior Executive Board (DON ITP SEB) (3) Responsibilities

a. Privacy Act of 1974, Pub. L. No , 88 Stat b. Army Regulation (AR) (Army Training and Leader Development), 19 August 2014.

SECRETARY OF THE ARMY WASHINGTON. SUBJECT: Army Directive (Frocking of Army Reserve Active Guard Reserve Officers)

SUBJECT: Army Directive (Installation Energy and Water Security Policy)

SUBJECT: Army Directive (Acquisition Reform Initiative #6: Streamlining the Contracting Process)

L.. ivt ~.. r~ John M. McHugh

DEPARTMENT OF THE ARMY OFFICE OF THE ASSISTANT SECRETARY MANPOWER AND RESERVE AFFAIRS 111 ARMY PENTAGON WASHINGTON, DC

SECRETARY OF THE ARMY WASHINGTON ASSISTANT SECRETARY OF THE ARMY (MANPOWER AND RESERVE AFFAIRS) DEPUTY CHIEF OF STAFF, G-1 THE SURGEON GENERAL

SUBJECT: Army Directive (Implementation of Acquisition Reform Initiatives 1 and 2)

Department of Defense DIRECTIVE

SUBJECT: Army Directive (Divesting Legacy Information Technology Hardware, Software, and Services in Support of the Army Network)

DEPARTMENT OF THE NAVY OFFICE OF THE CHIEF OF NAVAL OPERATIONS 2000 NAVY PENTAGON WASHINGTON, DC

SECRETARY OF THE ARMY WASHINGTON

Department of Defense DIRECTIVE

SECRETARY OF THE ARMY WASHINGTON

S E C R E T A R Y O F T H E A R M Y W A S H I N G T O N

SUBJECT: Army Directive (Expanding Positions and Changing the Army Policy for the Assignment of Female Soldiers)

SECRETARY OF THE ARMY WASHINGTON

SUBJECT: Army Directive (The Army Credentialing Assistance Program)

SUBJECT: Army Directive (Authorizing Use of Less-Lethal Force by Army Law Enforcement Personnel)

SECRETARY OF THE ARMY WASHINGTON

DOD Insider Threat Management and Analysis Center COUNTERINTELLIGENCE AWARENESS WEBINAR SERIES

INSIDER THREATS. DOD Should Strengthen Management and Guidance to Protect Classified Information and Systems

SECRETARY OF THE ARMY WASHINGTON

SUBJECT: Army Directive (Updated Policy for Army Child, Youth, and School Services Programs)

SUBJECT: Army Directive (Protecting Against Prohibited Relations During Recruiting and Entry-Level Training)

SECRETARY OF THE ARMY WASHINGTON 26 MAR 2010

EXECUTIVE ORDER 12333: UNITED STATES INTELLIGENCE ACTIVITIES

SECRETARY OF THE ARMY WASHINGTON. SUBJECT: Army Directive (Sergeant and Staff Sergeant Promotion Recommended List)

For Immediate Release October 7, 2011 EXECUTIVE ORDER

Department of Defense DIRECTIVE

The Army Protection Program

DEPARTMENT OF THE NAVY COUNTERINTELLIGENCE

1. Purpose. To implement the guidance set forth in references (a) through (e) by:

Army Security Cooperation Policy

Department of Defense DIRECTIVE

The Army Force Modernization Proponent System

Department of Defense INSTRUCTION

SECRETARY OF THE ARMY WASHINGTON. SUBJECT: Army Directive (Army Career and Alumni Program)

SECRETARY OF THE ARMY WASHINGTON. SUBJECT: Army Directive (Retaining: a Quality Noncommissioned Officer Corps)

NG-J2 CNGBI A CH 1 DISTRIBUTION: A 07 November 2013

DEPUTY SECRETARY OF DEFENSE 1010 DEFENSE PENTAGON WASHINGTON, DC

Department of Defense DIRECTIVE

Protecting US Military s Technical Advantage: Assessing the Impact of Compromised Unclassified Controlled Technical Information

Encl: (1) References (2) Department of the Navy Security Enterprise Governance (3) Senior Director for Security (4) Definitions (5) Responsibilities

MEMORANDUM FOR Staff Principals, HQUSACE, Commanders/Directors, USACE Commands

Preserving Investigative and Operational Viability in Insider Threat

Recommendations Table

COMPLIANCE WITH THIS PUBLICATION IS MANDATORY

U.S. DEPARTMENT OF HOMELAND SECURITY

Department of Defense INSTRUCTION. Counterintelligence (CI) in the Combatant Commands and Other DoD Components

Department of Defense INSTRUCTION

CHIEF NATIONAL GUARD BUREAU INSTRUCTION

Department of Defense DIRECTIVE. SUBJECT: DoD Management of Space Professional Development

Department of Defense DIRECTIVE

Department of Defense INSTRUCTION

Host Nation Support UNCLASSIFIED. Army Regulation Manpower and Equipment Control

Army Regulation Management. RAND Arroyo Center. Headquarters Department of the Army Washington, DC 25 May 2012 UNCLASSIFIED

Department of Defense DIRECTIVE. SUBJECT: Department of Defense Counterproliferation (CP) Implementation

DEPARTMENT OF THE NAVY OFFICE OF THE CHIEF OF NAVAL OPERATIONS 2000 NAVY PENTAGON WASHINGTON DC

DEPARTMENT OF THE NAVY HEADQUARTERS UNITED STATES MARINE CORPS 3000 MARINE CORPS PENTAGON WASHINGTON, DC

National Insider Threat Special Interest Group (NITSIG)

Department of Defense INSTRUCTION

Department of Defense INSTRUCTION

Naval Security Enterprise Newsletter

Department of Defense DIRECTIVE

DEPARTMENT OF THE NAVY HEADQUARTERS UNITED STATES MARINE CORPS 3000 MARINE CORPS PENTAGON WASHINGTON DC

Subj: MARINE CORPS POLICY ON ORGANIZING, TRAINING, AND EQUIPPING FOR OPERATIONS IN AN IMPROVISED EXPLOSIVE DEVICE (IED) ENVIRONMENT

Department of Defense DIRECTIVE. DoD Executive Agent (EA) for the DoD Cyber Crime Center (DC3)

Department of Defense DIRECTIVE

GREGORY A. SCOVEL. Work Experience Bent Creek Terrace Leesburg, VA (703)

NISPOM Update & Security Basics

Department of Defense INSTRUCTION

NUCLEAR REGULATORY COMMISSION [NRC ] Nuclear Regulatory Commission Insider Threat Program Policy Statement

ASSIGNMENT OF FUNCTIONS AND RESPONSIBILITIES WITHIN HEADQUARTERS, DEPARTMENT OF THE ARMY

Subj: DEPARTMENT OF THE NAVY (DON) INFORMATION SECURITY PROGRAM (ISP) INSTRUCTION

EXECUTIVE ORDER

THE WHITE HOUSE. Office of the Press Secretary. For Immediate Release January 17, January 17, 2014

Department of Defense INSTRUCTION

Operations Security UNCLASSIFIED. Army Regulation Operations and Signal Security

DEPARTMENT OF THE NAVY CYBERSPACE INFORMATION TECHNOLOGY AND CYBERSECURITY WORKFORCE MANAGEMENT AND QUALIFICATION

Department of Defense DIRECTIVE

The Army Force Modernization Proponent System

CHIEF NATIONAL GUARD BUREAU INSTRUCTION

Subj: DEPARTMENT OF THE NAVY CYBERSECURITY/INFORMATION ASSURANCE WORKFORCE MANAGEMENT, OVERSIGHT, AND COMPLIANCE

COMMUNICATIONS SECURITY MONITORING OF NAVY TELECOMMUNICATIONS AND INFORMATION TECHNOLOGY SYSTEMS

SUBJECT: Directive-Type Memorandum (DTM) Law Enforcement Reporting of Suspicious Activity

PRIVACY IMPACT ASSESSMENT (PIA) For the

DEPARTMENT OF THE ARMY OFFICE OF THE ASSISTANT SECRETARY MANPOWER AND RESERVE AFFAIRS. October 15, 2004

PRIVACY IMPACT ASSESSMENT (PIA) For the

DOD DIRECTIVE ASSISTANT SECRETARY OF DEFENSE FOR HOMELAND DEFENSE

CONFERENCE MATERIAL DAY ONE 19TH ANNUAL REVIEW OF THE FIELD OF NATIONAL SECURITY LAW

INSTRUCTION. Department of Defense. NUMBER May 22, 2008 USD(P) SUBJECT: Joint Deployment Process Owner

INTELLIGENCE COMMUNITY DIRECTIVE NUMBER 501

COMPLIANCE WITH THIS PUBLICATION IS MANDATORY

DEPARTMENT OF THE NAVY OFFICE OF THE CHIEF OF NAVAL OPERATIONS 2000 NAVY PENTAGON WASHINGTON DC

Department of Defense DIRECTIVE

Transcription:

SECRETARY OF THE ARMY WASHINGTON 3 1 JUL 2013 MEMORANDUM FOR SEE DISTRIBUTION SUBJECT: Army Directive 2013-18 (Army Insider Threat Program) 1. References: a. Presidential Memorandum (National Insider Threat Policy and Minimum Standards for Executive Branch Insider Threat Programs), 21 Nov 12. b. Army Regulation 381-12 (Threat Awareness and Reporting Program), 4 Oct 10. 2. This directive establishes the Army Insider Threat Program in accordance with reference 1 a. 3. The Army Insider Threat Program is an integrated departmental effort to deter, detect and mitigate risk by employees or servicemembers who may represent a threat to national security. A comprehensive insider threat program is essential to the safety and security of our Soldiers, Families, Civilians, contractors, infrastructure and information. The Army's program will strengthen the protection of personnel, information and resources. 4. Reference 1 a defines an insider threat as the "threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure of national security information, or through the loss or degradation of departmental resources or capabilities." 5. The Army will: a. ensure the security and safety of Army computer networks by establishing an integrated capability to monitor and audit user activity across all domains to detect and mitigate activity indicative of insider threat behavior; b. facilitate the sharing of counterintelligence (CI), security, information assurance (la), law enforcement (LE), human resources (HR), and other related information to recognize and counter the presence of an insider threat; c. evaluate personnel security information; d. provide the workforce with training on insider threat awareness and their reporting responsibilities; and

e. gather information to establish a centralized analysis, reporting and response capability. 6. Responsibilities a. The Assistant Secretary of the Army (Manpower and Reserve Affairs) and Deputy Chief of Staff (DCS), G-3/5/7 are designated as the Army Senior Officials responsible fo r providing management, accountability and oversight and for recommending resources for the Army Insider Threat Program. They will: (1) provide general oversight for the Army Insider Threat Program; (2) make sure all insider threat program activities, including training, are conducted in accordance with applicable laws, whistleblower protections, and civil liberties and privacy policies; and Staff. (3) ensure the close coordination of efforts across the Army Secretariat and b. The DCS, G-1 will facilitate the sharing of applicable HR information with authorized personnel, consistent with law and policy, that will allow them to recognize the presence of an insider threat. c. The DCS, G-2 will: ( 1) facilitate the sharing of Cl, security and other related information with the la, LE and HR components of the Army Insider Threat Program to recognize the potential for or actual presence of an insider threat; (2) evaluate and use all required personnel security information; (3) establish and maintain a Threat Awareness and Reporting Training Program that incorporates behavioral indicators of concern and mandated Cl and security reporting responsibilities; (4) establish and maintain a security education and reporting program; (5) develop and oversee implementation of a technical capability to monitor user activity on the Joint World Intelligence Communication System and coordinate with the Army Chief Information Officer (CIO)/G-6 on the development and oversight of a similar capability to be employed on other Army classified information systems; and (6) support an integrated, centralized analysis, reporting and response capability to detect and mitigate threats. 2

d. The DCS, G-3/5/7 will: (1) be the proponent for the policy in this directive; (2) establish and maintain an integrated, centralized analysis, reporting and response capability for the detection and mitigation of insider threats; and (3) ensure that the provisions of this directive are incorporated into appropriate Army regulations, the Army Planning and Programming Guidance, and the Army Programming Guidance Memorandum as soon as practicable. e. The Army CIO/G-6 will: (1) develop and oversee, in coordination with the Department of Defense (DoD) CIO, implementation of a technical capability to monitor user activity on the Secure Internet Protocol Router Network and any other Army classified computer network for which the Army (CIO/G-6) is responsible for conducting network operations; (2) ensure, in coordination with the DoD CIO and Office of the Army General Counsel, that cleared Army employees sign user agreements acknowledging that their activity on any Army classified or unclassified computer network, including portable electronic devices, is subject to monitoring and could be used against them in a criminal, security or administrative proceeding; (3) ensure, in coordination with the DoD CIO and Office of the Army General Counsel, that banners for the Army's classified and unclassified computer networks are established informing users that their network activity is being monitored for lawful U.S. Government purposes and can result in criminal or administrative actions against the user; (4) coordinate with the DCS, G-2 to facilitate the sharing and synchronizing of user activity monitoring and data auditing across all computer networks to detect activity indicative of insider threat behavior; and (5) provide the Army Insider Threat Program all relevant classified and unclassified la data from all computer networks. f. The Provost Marshal General will: (1) facilitate the sharing of applicable criminal intelligence and LE information consistent with privacy laws, civil liberties and regulations to authorized personnel in the Cl, la and HR components of the Army Insider Threat Program to recognize the potential for or actual presence of an insider threat; 3

(2) oversee an integrated, centralized analysis, reporting and response capability for the detection and mitigation of insider threats; (3) establish an LE-based awareness and reporting program; and (4) develop a capability to vet personnel for access to Army facilities against authoritative U.S. Government databases to identify potential criminals, terrorists or other security and insider threats. g. The Army General Counsel will review the Army Insider Threat Program for legality and consistency with reference 1 a. h. The Judge Advocate General will review the Army Insider Threat Program for legality and consistency with reference 1 a. i. The Surgeon General will provide information from medical sources, consistent with privacy laws and regulations, to authorized personnel to help them recognize the presence of an insider threat. j. All Headquarters, Department of the Army Principal Officials, commanders, Army organizations and personnel shall support the DCS, G-3/5/7 in executing this directive and implementing the Army Insider Threat Program as it evolves. k. The Army Civil Liberties Officer will ensure that any civil rights and civil liberties issues are appropriately addressed as future insider threat efforts are implemented across the Army. I. Army Protection Program ( 1) The Army Protection Program Board of Directors will provide the senior-level oversight to ensure cross-functional coordination among Headquarters, Department of the Army Principal Officials and commanders. (2) The Army Protection Program management framework (Council of Colonels, General Officer Steering Committee and Board of Directors) will track and monitor development of the Army Insider Threat Program. (3) As the Army Insider Threat Program matures, the Office of the DCS, G-3/5/7 (G-34) will conduct self-assessments of compliance with policies and standards during scheduled Army Protection Program assessments. 7. Administrative publications affected by this directive will be identified, reviewed and revised to incorporate this guidance within 6 months of the date of this directive. 4

8. This directive is effective immediately. DISTRIBUTION: Principal Officials of Headquarters, Department of the Army Commander U.S. Army Forces Command U.S. Army Training and Doctrine Command U.S. Army Materiel Command U.S. Army Pacific U.S. Army Europe U.S. Army Central U.S. Army North U.S. Army South U.S. Army Africa/Southern European Task Force U.S. Army Special Operations Command Military Surface Deployment and Distribution Command U.S. Army Space and Missile Defense Command/Army Strategic Command U.S. Army Cyber Command U.S. Army Network Enterprise Technology Command/9th Signal Command (Army) U.S. Army Medical Command U.S. Army Intelligence and Security Command U.S. Army Criminal Investigation Command U.S. Army Corps of Engineers U.S. Army Military District of Washington U.S. Army Test and Evaluation Command U.S. Army Installation Management Command Superintendent, United States Military Academy Director, U.S. Army Acquisition Support Center Executive Director, Arlington National Cemetery Commander, U.S. Army Accessions Support Brigade CF: Director, Army National Guard Director of Business Transformation 5