NAVAIR IT Compliance

Similar documents
Subj: INFORMATION MANAGEMENT/INFORMATION TECHNOLOGY POLICY FOR FIELDING OF COMMERCIAL OFF THE SHELF SOFTWARE

Department of Defense Investment Review Board and Investment Management Process for Defense Business Systems

Information Technology Expenditure Approval Authority

PRIVACY IMPACT ASSESSMENT (PIA) For the

2016 Major Automated Information System Annual Report

Department ofthe Navy Business Transformation Plan Fiscal Year 2013 & Fiscal Year 2012 Annual Report

DEPARTMENT OF THE NAVY DEPUTY CHIEF INFORMATION OFFICER MARINE CORPS ROLES AND RESPONSIBILITIES

Department of Defense INSTRUCTION

PRIVACY IMPACT ASSESSMENT (PIA) For the

Subj: INFORMATION TECHNOLOGY PORTFOLIO MANAGEMENT IMPLEMENTATION

Subj: MISSION AND FUNCTION OF FIELD SUPPORT ACTIVITY, WASHINGTON, DC

NG-J6/CIO CNGBI A DISTRIBUTION: A 26 September 2016 NATIONAL GUARD BUREAU JOINT INFORMATION TECHNOLOGY PORTFOLIO MANAGEMENT

DOD INFORMATION ASSURANCE CERTIFICATION AND ACCREDITATION PROCESS (DIACAP) SURVEY AND DECISION TREE

Relationship of the DOD Information Technology Standards Registry (DISR) with the Defense Standardization Program

FOR OFFICIAL USE ONLY. Naval Audit Service. Audit Report

NAVAIR Commander s Awards recognize teams for excellence

DEPARTMENT OF THE NAVY OFFICE OF THE CHIEF OF NAVAL OPERATIONS 2000 NAVY PENTAGON WASHINGTON DC

DOD INSTRUCTION ACCOUNTABILITY AND MANAGEMENT OF INTERNAL USE SOFTWARE (IUS)

CNATRAINST N6 11 Aug 2016

Information Technology

PRIVACY IMPACT ASSESSMENT (PIA) For the

PRIVACY IMPACT ASSESSMENT (PIA) For the

DEPARTMENT OF THE NAVY FFIC EN AGON C Q

UNCLASSIFIED. UNCLASSIFIED Navy Page 1 of 7 R-1 Line #31

CHAIRMAN OF THE JOINT CHIEFS OF STAFF INSTRUCTION

Getting The Boundaries Right: The DoD Real Property Inventory Mapping Pilot Project

DoD Cloud Computing Strategy Needs Implementation Plan and Detailed Waiver Process

Department of Defense DIRECTIVE

Department of Defense DIRECTIVE

Department of Defense INSTRUCTION

UNCLASSIFIED R-1 ITEM NOMENCLATURE FY 2013 OCO

SAF/CIO A6 Mission Brief

DOD DIRECTIVE DOD SPACE ENTERPRISE GOVERNANCE AND PRINCIPAL DOD SPACE ADVISOR (PDSA)

PRIVACY IMPACT ASSESSMENT (PIA) For the

OPNAVINST A N Oct 2014

Subj: DEPARTMENT OF THE NAVY ENERGY PROGRAM FOR SECURITY AND INDEPENDENCE ROLES AND RESPONSIBILITIES

DoD Joint Federated Assurance Center (JFAC) 2017 Update

Department of Defense. Enterprise Roadmap

Department of Defense INSTRUCTION

UNCLASSIFIED. R-1 ITEM NOMENCLATURE PE N: Consolidated Afloat Network Ent Services(CANES) FY 2012 OCO

UNCLASSIFIED. FY 2016 Base

Report No. D July 30, Data Migration Strategy and Information Assurance for the Business Enterprise Information Services

Report No. D September 28, DOD Enterprise Staffing Solution

Department of Defense DIRECTIVE. DoD Executive Agent (EA) for the DoD Cyber Crime Center (DC3)

DEFENSE LOGISTICS AGENCY AMERICA S COMBAT LOGISTICS SUPPORT AGENCY

CHIEF NATIONAL GUARD BUREAU INSTRUCTION

April 4, Press Kit. Captain Michael Abreu biography 2. Mr. Bill Toti biography 3. NMCI Transition 4. NMCI Contract Transition Timeline 5

2016 Major Automated Information System Annual Report

OPNAVINST DNS-3 17 Sep Subj: MISSION, FUNCTIONS, AND TASKS OF THE OFFICE OF THE CHIEF OF NAVAL OPERATIONS

UNCLASSIFIED R-1 ITEM NOMENCLATURE. FY 2014 FY 2014 OCO ## Total FY 2015 FY 2016 FY 2017 FY 2018

REQUIREMENTS TO CAPABILITIES

Logbook Navy Perspective on Joint Force Interdependence Navigating Rough Seas Forging a Global Network of Navies

DIRECTIVE. SUBJECT: Unique Identification (UID) Standards for a Net-Centric Department of Defense

OPNAVINST N46 21 Apr Subj: MISSION, FUNCTIONS, AND TASKS OF COMMANDER, NAVY INSTALLATIONS COMMAND

Department of Defense

2016 Major Automated Information System Annual Report

DEPARTMENT OF THE NAVY HEADQUARTERS UNITED STATES MARINE CORPS 3000 MARINE CORPS PENTAGON WASHINGTON, DC

PRIVACY IMPACT ASSESSMENT (PIA) For the. Navy Standard Integrated Personnel System (NSIPS)

Subj: CHEMICAL, BIOLOGICAL, RADIOLOGICAL, AND NUCLEAR DEFENSE REQUIREMENTS SUPPORTING OPERATIONAL FLEET READINESS

ELECTROMAGNETIC SPECTRUM POLICY AND MANAGEMENT

Department of Defense DIRECTIVE. SUBJECT: Deputy Chief Management Officer (DCMO) of the Department of Defense

Department of Defense DIRECTIVE

2016 Major Automated Information System Annual Report

Department of the Navy Chief Information Officer

2016 Major Automated Information System Annual Report

Subj: OVERSIGHT OF THE DEPARTMENT OF THE NAVY MILITARY INTELLIGENCE PROGRAM

2016 Major Automated Information System Annual Report

Department of Defense DIRECTIVE

Subj: DEPARTMENT OF THE NAVY SENIOR GOVERNANCE COUNCILS

DEPUTY SECRETARY OF DEFENSE 1010 DEFENSE PENTAGON WASHINGTON, DC SUBJECT: Implementation of Microsoft Windows 10 Secure Host Baseline

Department of Defense

UNCLASSIFIED FY 2016 OCO. FY 2016 Base

2016 Major Automated Information System Annual Report

Achieving Information Dominance: Unleashing the Ozone Widget Framework

Department of Defense INSTRUCTION

Subj: NAVY ENTERPRISE TEST AND EVALUATION BOARD OF DIRECTORS

PRIVACY IMPACT ASSESSMENT (PIA) For the

UNCLASSIFIED. R-1 ITEM NOMENCLATURE PE D8Z: Support to Networks and Information Integration. FY 2011 Total Estimate. FY 2011 OCO Estimate

F oreword. Working together, we will attain the greatest degree of spectrum access possible for the current and future Navy/Marine Corps team.

Department of Defense INSTRUCTION

JRSS Discussion Panel Joint Regional Security Stack

Title:F/A-18 - EA-18 Aircraft / System Program Protection Implementation Plan

Report No. D May 14, Selected Controls for Information Assurance at the Defense Threat Reduction Agency

SECNAVINST A DON CIO 20 December Subj: DEPARTMENT OF THE NAVY INFORMATION ASSURANCE (IA) POLICY

Logbook Adm. Greenert and Gen. Amos: A New Naval Era Adm. Greenert and Gen. Welsh: Breaking the Kill Chain

Subj: DEPARTMENT OF THE NAVY POLICY ON INSENSITIVE MUNITIONS

UNCLASSIFIED. R-1 ITEM NOMENCLATURE PE D8Z: Net Centricity FY 2012 OCO

UNCLASSIFIED. R-1 Program Element (Number/Name) PE D8Z / Defense-Wide Electronic Procurement Capabilities. Prior Years FY 2013 FY 2014 FY 2015

Department of Defense INSTRUCTION

THE JOINT STAFF Research, Development, Test and Evaluation (RDT&E), Defense-Wide Fiscal Year (FY) 2009 Budget Estimates

OPNAVINST H N12 3 Sep 2015

UNCLASSIFIED

Guest Presenter Jay Bottelson

UNCLASSIFIED R-1 ITEM NOMENCLATURE

Prepared by: DoDIIS Management Board

UNCLASSIFIED. FY 2011 Total Estimate

UNCLASSIFIED R-1 ITEM NOMENCLATURE

Department of Defense INSTRUCTION

PROCESS FOR REQUESTING WAIVERS FOR CONTINUED USE OF UNSUPPORTED COMMERCIAL OFF THE SHELF SOFTWARE

UNCLASSIFIED R-1 ITEM NOMENCLATURE

Transcription:

NAVAIR IT Compliance PRESENTED BY: Mr. Layton Moore Naval Air Systems Command Principle Deputy Command Information Officer 8 NOVEMBER 2007 NAVAIR Public Release 687 Distribution Statement A Approved for public release; distribution is unlimited 1

The Challenge of Managing IT Within the Navy The rate of change in IT policies, Congressional mandated processes, and DoD/DON instructions makes IT management a challenge for all of us. Nearly every new capability that supports our warfighter contains some type of IT. DON Initiatives: Cyber Asset Reduction and Security (CARS) reduce all DON assets by 51% by 2010 Currently performing asset discovery for Southeast Region Functional Area Manager (FAM) Reduce DON applications by 51% by 2010 Must be FAM approved to run on any Navy network Federal Information Security Management Act (FISMA) Congressional Law 100% IT, including IT in weapon and weapon system program must have an ATO DITPR-DON Authoritative DON database for all IT Assets Clinger-Cohen Compliance for all MC/ME IT Cannot achieve milestones or award contracts Our Challenge Reduce IT assets within the DON Protect and Secure Mission Critical data and assets Ensure Weapon program schedule and cost are not impacted Give the Warfighter the IT Tools/Technology they need As of 22 October 2007 2

Cyber Asset Reduction and Security (CARS) Taskforce Overview CNO (R081315Z Dec 06) directed COMNAVNETWARCOM to establish Task Force (CARS TF) to achieve the following goals: By Sept 2010, reduce the Navy s ashore (Secret and below) IT footprint at least 51% By Dec 2008, provide and maintain Navy enterprise IM/IT asset visibility By Sept 2010, establish and maintain a network protection policy and other mandated security policies on all Navy owned and/or operated ashore NIPR and SIPR networks By Sept 2010, eliminate, consolidate and/or migrate capabilities to either: Designated enterprise networks (NMCI and ONE-Net), or Approved networks that have been excepted to be outside Target all other for elimination Schedule Southeast Region: Orlando NADEP CP NADEP JAX As of 22 October 2007 3

Navy s IT Goals Cost-wise generation of readiness Finances aligned with mission areas Realize savings / Return on Investment (ROI) from consolidations, reductions, etc Transparency, accountability, and confidence in fidelity of IT financial and asset information (by end of CY2008) Improved Network Security Posture Enterprise security solutions Unclassified Trusted Network-Protect (UTNP) and Server Network Time Policy (STNP) policy compliance FISMA compliance Evolving to a capability of right-sized network infrastructure and architecture Implement enterprise application solutions, achieve IT asset reduction (applications, networks, etc.) Development of formal architecture products (OV, SV ) Desired Results: Execute a strategy of integrity to deliver sustainable programs and processes within Navy s s shore- based secret and below networks As of 22 October 2007 4

IT Compliance for NAVAIR Office of CIO OSD Investment Certification (formerly BMMP) Clinger-Cohen Act of 1996 (CCA) Functional Area Manager (FAM) Information Assurance (IA) IT Budget/Exhibit 300 DoD It Portfolio Repository (DITPR DON) (formerly IT Registration) Navy Marine Corps Intranet (NMCI) NAVAIR Web Enablement & Web Policy Enterprise Architecture (EA) Enterprise Licensing (EL) Over 500-Related IT Policies, Mandates & Laws As of 22 October 2007 5

NAVAIR Office of CIO Reviews All IT for Compliance OSD Investment Certification Ronald Regan National Defense Authorization Act (NDAA) for Fiscal Year 2005, 1 October 2005 Clinger-Cohen Act of 1996 (CCA) Public Law 104-106 Functional Area Manager (FAM) CNO Naval Message 2322082 May 02, Enterprise Approach to Managing Application Databases within Navy Information Assurance (IA) Public Law 104-106 IT Budget/Exhibit 300 Public Law 104-106 DoD IT Portfolio Repository (DITPR DON) (formerly IT Registration) Ronald Regan National Defense Authorization Act (NDAA) for Fiscal Year 2005, 1 October 2005 Navy Marine Corps Intranet (NMCI) October 6, 2000 DoN awards NMCI contract NAVAIR Web Enablement & Web Policy Deputy Secretary of Defense Memorandum, 7 December 1998, Web Site Administration signed by John Hamre Enterprise Architecture (EA) Public Law 104-106 Enterprise Licensing (EL) DoDI 5000.2 12 May 2003, Section E4.2.7 signed by Paul Wolfowitz As of 22 October 2007 6

Impacts OSD Investment Certification Anti-Deficiency Act for Comptrollers OSD withholds funding Clinger-Cohen Act of 1996 (CCA) Must have CCA before milestone is granted Must have CCA before any new contract awards Functional Area Manager (FAM) Must be FAM Approved in order to operate in Navy Information Assurance (IA) NETWARCOM will shut down programs without proper accreditation DON can withhold funding As of 22 October 2007 7

Doing Business with NAVAIR When IT is Involved The rate of change in IT policies, Congressional mandated processes, and DoD/DON instructions makes IT management a challenge for all of us. Be aware of IT Compliance Issues in working with your customers Incorporate the Standard statement of work clauses in New Contracts Microsoft Word Document Stay current on IT Policies As of 22 October 2007 8

Questions As of 22 October 2007 9