Attachment J-12 AMSIS Interface Requirements Document (IRD) Designee Management System (DMS)

Size: px
Start display at page:

Download "Attachment J-12 AMSIS Interface Requirements Document (IRD) Designee Management System (DMS)"

Transcription

1 AMSIS Draft Screening Information Request, Attachment J-12 Attachment J-12 AMSIS Interface Requirements Document (IRD) Designee Management System (DMS) Aerospace Medical Safety Information System (AMSIS) DTFAWA-16-R-70451

2 Aerospace Medicine Safety Information System (AMSIS) Program Office (IRD) Designee Management System (DMS) February 12, 2016 Federal Aviation Administration 600 Independence Avenue, SW Washington, DC i

3 Signature Approval Page Aerospace Medicine Safety Information System (AMSIS) To And From Designee Management System (DMS) Approval Signatures Name Organization Signature Date Signed Adrian Caster AMSIS Program Manager DMS Janet Talley AAM-110 ii

4 AMSIS Draft Screening Information Request, Attachment J-12 Revision Record REVISION LETTER DESCRIPTION DATE ENTERED BY Aerospace Medical Safety Information System (AMSIS) DTFAWA-16-R-70451

5 Table of Contents 1 Scope Summary Subsystem Responsibility List Applicable Documents Government Documents Non-Government Documents Sources of Documents ISO Documents IETF Documents Interface Requirements General Requirements Security Requirements Data Security Requirements General Functional Requirements Functional Requirements Application Processes and Message Requirements Identification of Each Application Process Application Process Capability Requirements Message Content Requirements Relationship among Messages Quality of Service Requirements Error Handling Requirements Interface Summary Table Protocol Implementation Application Layer Services Transport Layer Services Network Layer Services Data Link Layer Services Physical Layer Services Physical Requirements Electrical Power and Electronic Requirements Connectors Wire/Cables Grounding Fasteners Electromagnetic Compatibility Quality Assurance Provisions Responsibility for Verification Special Verification Requirements Qualification Methods Demonstration iv

6 4.3.2 Regression Test System Test Notes Concept of Operations AMSIS Abbreviations and Acronyms List of Figures Figure 3-1. System Interface Diagram... 9 Figure 3-2. AMSIS Interface to DMS List of Tables Table 1-1. Subsystem Responsibility List... 6 Table 3-1. Data Sets Table 3-2. AME Performance/Exam Data Elements 12 Table 3-3. Designee Profile/Exam Data Elements...12 Table 3-4. Interface Summary Table 13 v

7 1 Scope This (IRD) provides the requirements for an interface between Aerospace Medicine Safety Information System (AMSIS) and Designee Management System (DMS). 1.1 Summary AMSIS is sponsored by the Office of Aerospace Medicine (AAM) under the Office of Aviation Safety (AVS). AAM is responsible for a broad range of medical programs and services for both the domestic and international aviation communities, including pilot medical certification. Office of Information & Technology (AIT) manages the Medical Support Systems (MSS). AIT manages all aspects of the information technology operations and maintenance support for the Medical Support Systems (MSS) in support of AAM business operations. AMSIS will subsume the MSS for medical certification & clearance business operations (DIWS Web, MedXpress, AMCS, and CPDSS). DMS is a system within the AVS enterprise. The Designee Management System (DMS) is a web-based tool designed to standardize the management of designees. The Designee Management Policy establishes the process and procedures for managing all aspects of administration including registration, application, selection, appointment, orientation, training, oversight, suspension and termination. 1.2 Subsystem Responsibility List Table 1-1. Subsystem Responsibility List System Name Responsible Program Office AMSIS Aerospace Medicine Safety Information System AJM-2342 DMS Designee Management System AVS 6

8 2 Applicable Documents The following listed documents form a part of this IRD to the extent specified herein. In event of a conflict between the documents referenced herein and the contents of this IRD, the contents of this IRD must be considered the superseding requirement. If interfaces are with systems within the AVS enterprise, then this IRD does not require interconnection agreements or MOU/MOA per FAA Order A, Information Systems Security Program, Section 2.f.(4). 2.1 Government Documents Federal Aviation Administration (FAA) Standards: FAA-STD-025f Preparation of Interface Documentation, 11/30/07. FAA Specifications: FAA Order A Information Systems Security Program, 09/11/2006 FAA Order E Data Management, 11/16/11. Non-FAA Specifications: NIST SP Security Guide for Interconnecting Information Technology Systems, August Non-Government Documents International Organization for Standardization (ISO): ISO/IEC :1994 ISO/IEC :1996 Information Technology - Telecommunications and information exchange between systems - Local and Metropolitan area networks - Specific requirements - Part 2: Logical link control, Information Technology - Telecommunications and information exchange between systems - Local and Metropolitan area networks - Specific requirements - Part 3: Carrier sense multiple access with collision detection (CSMA/CD) access method and physical layer specifications, Internet Engineering Task Force (IETF): 7

9 IETF Standard 5/RFC-791 Internet Protocol, September 1981 IETF Standard 6/RFC-768 User Datagram Protocol, August 1980 IETF Standard 41/RFC-894 Standard for the Transmission of IP Datagrams over Ethernet Networks, April Sources of Documents Copies of government specifications, standards, drawings, and publications required by suppliers in connection with this interface should be obtained from the procuring activity or as directed by the contracting officer ISO Documents Copies of International Standards Organization documents may be obtained from American National Standards Institute, 11 West 42 nd Street, 13 th Floor, New York City, NY Telephone: (212) , Telefax: (212) , web site: or IETF Documents Copies of the Internet Engineering Task Force, Request for Comment (RFC), documents may be obtained through the web site: 8

10 3 Interface Requirements AMSIS interfaces with several internal and external systems as depicted in Figure 3-1. Internal systems are those systems managed/maintained by the Office of Information & Technology (AIT) at the Enterprise Data Center (EDC). External systems are managed/maintained outside of the AIT/EDC organizational infrastructure. The AMSIS system will be released in two segments. Segment 1 interfaces are indicated by a solid line and Segment 2 interfaces are indicated by a dashed line. 3.1 General Requirements Figure 3-1. System Interface Diagram For interface to the System User(s) and other FAA Enterprise Architecture elements, the following messaging requirements apply: AMSIS transmission of system status messages must be in accordance with NIST SP Security Guide for Interconnecting Information Technology Systems. AMSIS must support integration with the FAA messaging system. AMSIS must utilize one of the following protocols: 9

11 o Internet Message Access Protocol (IMAP). o Post Office Protocol (POP) Version 3. o Simple Mail Transfer Protocol (SMTP). AMSIS transmissions must comply with FAA Order A, Electronic Mail. AMSIS must interface with FAA Lightweight Directory Access Protocol (LDAP) system. AMSIS must use data from LDAP to populate user profiles at login. AMSIS notifications must be in American Standard English. AMSIS instructions must be in American Standard English. AMSIS must automatically deliver a notification of failure to logged-in user(s). AMSIS must allow user(s) to subscribe or unsubscribe to workflow notifications. AMSIS must notify user(s) with s related with specific steps of the workflow process. For exchange with other FAA/External Organizations, the following general interface requirements apply: AMSIS Program must establish and maintain mutually secure, electronic interfaces with DMS. The AMSIS Program must develop Computer Matching Agreements in lieu of a MOU/MOA with DMS. AMSIS must interface with DMS without a direct user intervention. AMSIS must interface with DMS without an additional authentication process. AMSIS must utilize industry standards and protocols for data exchange with DMS in accordance with FAA Order E Security Requirements Any equipment in support of the interface between AMSIS and DMS must be maintained within a physically secured facility staffed by cleared personnel. Protection for the interface is provided through the physical and personnel security measures Data Security Requirements All interface sessions and data transmissions must be encrypted. All data must to be treated as Sensitive-But-Unclassified -- no classified data may be transmitted. By no means must data or login credentials ever be transmitted in an unencrypted manner, on any type of network (Intranet, Internet, etc.). Technical personnel from AMSIS and DMS system must establish connectivity that meets the specific encryption requirements/capabilities applicable to their system/organization. The technical details of this connectivity must be documented in an ICD, maintained by each system's technical support personnel. 10

12 3.2 General Functional Requirements The interface between AMSIS and DMS must be a bi-directional interface. DMS must transfer Aviation Medical Examiner (AME) information to AMSIS. AMSIS must transfer medical certification application related information to DMS. The AMSIS to DMS interface is depicted in Figure Functional Requirements Figure 3-2. AMSIS Interface to DMS The bi-directional interface between AMSIS and DMS must provide the following functions: a. AME Performance/Exam data must be pulled into DMS from AMSIS. b. DMS must initiate the connection and only pull the new data generated on a periodic basis. c. AMSIS must provide AME Performance/Exam data in the form of a generated table view. d. AMSIS must use a DMS provided 9-digit Designee number. e. DMS must replicate a table view of Designee profile information (Designee profile, exam data, designation info) into the AMSIS database. f. AMSIS must treat Personally Identifiable Information (PII) shared with DMS in the same privacy-sensitive manner, integrity, and quality of the originating source that defines the protocols, recipients, security, authorized uses, and other protection Application Processes and Message Requirements Identification of Each Application Process The application processes of this interface must support transfer of information between AMSIS and DMS. 11

13 Application Process Capability Requirements The application process must provide an essential bi-directional message transfer service of an availability to be determined Message Content Requirements AMSIS and DMS must subscribe to one or more data sets. A data set must be composed of one or more messages (refer to Table 3-1). Each message must be composed of a set of data elements. Table 3-1. Data Sets Data Set Message Type Message ID 1 AME Performance/Exam Data DMS-1, AMSIS- 1 2 Designee Profile/Exam Data DMS-2 The units of information defining this interface must be data elements. These data elements must be contained within one or more messages that are transferred between AMSIS and DMS. The specific messages transferred and the location of their formats must be defined based on standard protocols. The data elements for the AME Performance/Exam Data and Designee Profile/Exam Data are listed (refer to Table 3-2, Table 3-3). Table 3-2. AME Performance/Exam Data Elements Export Field Name Data Field Export Field Name Data Field Total Exam Total Exam Days Days First Class Exam First Class Exam 60+ Days 60+ Days Second Class Exam Second Class Exam % Over 60 Days % Over 60 Days Third Class Exam Third Class Exam Total exams Total number exams Deferred Exam Deferred Exam DataPeriod DataPeriod Denied Exam Denied Exam APPTMONTH APPTMONTH Total Exams Total Exams TOTALEXAMS2YEARS TOTALEXAMS2YEARS Deferred / Denied % Deferred / Denied % Physical Exam Date Physical Exam Date Judgment Errors - Rv Judgment Errors - Rv Date Exam Received Date Exam Received Judgment Errors - Hx Judgment Errors - Hx MID MID Judgment Errors - % Judgment Errors - % Applicant Name Applicant Name Total Exams Submitted Total Exams Submitted Date Created Date Created Under 15 Days Under 15 Days AME_NUMBER AME_NUMBER Days Days AME_NAME AME_NAME Table 3-3. Designee Profile/Exam Data Elements 12

14 Export Field Name Data Field Export Field Name Data Field DMS Number DMSNumber Specialty medicalspecialty Last Name LastName First Class Examiner FirstClass First Name FirstName DOB BirthDate Middle MiddleName Degree Degree AME Number DesigneeNumber Authorization Authorizations Address 1 ADDRESS_LINE_1 Status UserStatus Address 2 ADDRESS_LINE_2 Appointment Date AppointmentDate City CITY Clinic Name CLINIC_NAME State State County Name COUNTY_NAME Zip Code POSTAL_CODE Medical License MedicalLicense Country Country AME Type AME_Type Primary Phone PointOfContactPhoneNumber Employee Designated Employee_designated Address AddressPrimary AME Region AME_Region Relationship among Messages All messages exchanged between AMSIS and DMS must be of equal priority. The message contents and formats, including their frequency, must be determined based on messaging best practices and standard protocols Quality of Service Requirements The quality of service requirements must be contained in the Statement of Work Error Handling Requirements Identifying and handling application process errors must be the responsibility of the receiving system Interface Summary Table The messages must be exchanged between AMSIS and DMS as specified in Table 3-4. Table 3-4. Interface Summary Table Source Interface Message Definition Destination DMS Request AME Performance/Exam Data Message AMSIS (Data Set 1) AMSIS Send AME Performance/Exam Data Message DMS (Data Set 2) DMS Send Designee Profile/Exam Data Message AMSIS (Data Set 3) 13

15 3.2.3 Protocol Implementation Application Layer Services The application layer must support the transfer of the data sets in Table 3-1 between AMSIS and DMS Transport Layer Services Data transmission between AMSIS and DMS must be in accordance with the standard User Datagram Protocol as specified in IETF Standard 6, RFC Network Layer Services Data transmission between AMSIS and DMS must be in accordance with the standard Internet Protocol as specified in IETF Standard 5, RFC Data Link Layer Services Data transmission between AMSIS and DMS must be implemented as specified in ISO/IEC :1994 and ISO/IEC :1996. Data link layer protocol must conform to IETF Standard 41 / RFC Physical Layer Services Data transmission between AMSIS and DMS must be implemented as specified in ISO/IEC :1994 and ISO/IEC : Physical Requirements Electrical Power and Electronic Requirements Connectors This IRD imposes no explicit requirements for connectors Wire/Cables This IRD imposes no explicit requirements for cables Grounding This IRD imposes no explicit requirements for grounding Fasteners This IRD imposes no explicit requirements for fasteners Electromagnetic Compatibility This IRD imposes no explicit electromagnetic compatibility requirements. 14

16 4 Quality Assurance Provisions 4.1 Responsibility for Verification The Federal Aviation Administration (FAA) must be responsible for developing and implementing the verification of requirements for each project. The FAA must delegate verification activities to other FAA organizations, independent contractors, and/or the major prime contractor. 4.2 Special Verification Requirements There are no special verification requirements. 4.3 Qualification Methods Qualification methods for this interface must be based on system demonstration and system automated testing of the interface. At each test or demonstration, analysis must be performed when errors are identified. Description of the qualification methods are below Demonstration The system must be tested in a non-production environment that mirrors the environment in which the production system will be fielded. Every system feature may be tested for correctness and satisfaction of functional requirements. This must be performed in a user acceptance test (UAT) environment, and testers must be provided test cases to enable this. Testers are encouraged to perform standard work procedures not necessarily defined within the test cases. (Performance testing must be included in the System Testing phase, unless FAA plans to perform stress testing on its environment) Regression Test AMSIS system should undergo regression testing across its various subsystems to determine the impact of the new interface. Tests are conducted in accordance with existing test cases derived from baselined requirements. Defects related to the interface must be reported to a defect tracking system. The defects discovered must be logged into the defect tracking system and followed to completion with all activities performed to resolve the issues System Test System testing ensures compliance with standards and satisfaction of functional and technical requirements by executing tests on target hardware using simulated operational data files and prepared test data. Tests must be conducted in accordance with test cases derived from the system requirements and supported by system design elements. Additional tests ensuring operation in line with generally accepted Web application standards must also be performed. All findings must be recorded a defect tracking system. The defects discovered must be logged into the defect tracking system and followed to completion with all activities performed to resolve the issues. Performance testing must be executed to ensure any system response time and program run-time issues are addressed. 15

17 5 Notes 5.1 Concept of Operations AMSIS AMSIS must provide an aerospace medical information network that integrates critical medical information from geographically distributed locations nationally and internationally. AMSIS must adhere to any re-engineering aerospace medicine program business processes provided from AAM; design and develop new information systems architecture; design, procure and deploy the AMSIS system and any required enhancements throughout the life of the program. The program objectives include providing tools necessary for AAM to analyze information to make risk-based policy decisions through an automated method of collecting, reviewing, and analyzing medical information for Airmen and ATCS. This system must ensure timely and comprehensive access to data in reducing delays, thereby improving timeliness and accuracy while eliminating paper based correspondence. It must also enable collaboration within the aviation community, both domestic and international, as well as among personnel, designees, and applicants. Data must be easily accessible, while facilitating management and workforce decision making, thereby providing the basis for a proactive safety approach with improved productivity. AMSIS must support the following operational scenarios: Issuing and maintaining aviation certificates and licenses Providing for medical certification of all pilots operating within National Airspace System (NAS) Adhering to aerospace medical and safety standards and policy Monitoring safety performance to ensure compliance with current standards and regulation Adhering industry safety programs and practices (e.g., drug and alcohol compliance and enforcement program) Providing necessary information for investigating the medical aspects of aviation accidents. 5.2 Abbreviations and Acronyms Acronym AAM ACCME AMCS AME AMEIS AMSIS API Full Name Office of Aerospace Medicine Accreditation Council for Continuing Medical Education Aerospace Medical Certification Subsystem Aviation Medical Examiners Airman Medical Examiner Information Subsystem Aerospace Medicine Safety Information System A Programming Interface 16

18 ARB ASH ASKME ASOR ATCS ATO AVS BPM BPR CAIS CAMI CETS CFR CPDSS DIWS EIS ECG FAA FAR F&E FTP ICD LIE NDR NIST NTSB PII RCISS RFS SE SFS SOA SQL VA WAN VPN WebOPSS Architecture Review Board FAA Security Office Aviation Safety Knowledge Management Environment Assignment of Safety Objectives and Requirements Air Traffic Control Specialists Air Traffic Organization FAA Office of Aviation Safety Business Process Management Business Process Reengineering Comprehensive Airman Information System Civil Aeronautical Research Institute Compliance and Enforcement Tracking Subsystem Code of Federal Regulations Covered Position Decision Support Subsystem Document Imaging Workflow Subsystem Enforcement Information System Electrocardiogram Subsystem Federal Aviation Administration Federal Acquisition Regulation Facility and Equipment File Transfer Protocol Interface Control Document Legal Instrument Examiner National Drivers Registry National Institute of Standards and Technology National Transportation Safety Bureau Personally Identifiable Information Regulation and Certification Infrastructure for System Safety Regional Flight Surgeon Systems Engineering Senior Flight Surgeon Service Oriented Architecture Standard Query Language Veterans Administration Wide Area Network Virtual Private Network Operational Procedure Specifications Subsystem 17

U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION. Air Traffic Organization Policy

U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION. Air Traffic Organization Policy U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION Air Traffic Organization Policy ORDER JO 1370.117 Effective Date: 01/21/2014 SUBJ: National Airspace System (NAS) Internet Protocol (IP)

More information

Aerospace Policy. 2. Audience. All Regional Flight Surgeons (RFSs), AME Program Analysts, AME Surveillance Program Analysts, and AMEs.

Aerospace Policy. 2. Audience. All Regional Flight Surgeons (RFSs), AME Program Analysts, AME Surveillance Program Analysts, and AMEs. Aerospace Policy ORDER 8520.2G Effective Date: 05/19/11 SUBJ: Aviation Medical Examiner System 1. Purpose of This Order. This order supplements VS 1100.2, Managing AVS Delegation Programs, by providing

More information

FAA Familiarization Briefing

FAA Familiarization Briefing FAA Familiarization Briefing Presented by: Kathryn Vernon Presented to: Regional Administrator Northwest Mountain Region Oregon Congressional Staff Presented on: March 13, 2015 FAA Statistics National

More information

Vendor Questionnaire

Vendor Questionnaire Instructions: This questionnaire was developed to assess the vendor s information security practices and standards. Please complete this form as completely as possible, answering yes or no, and explaining

More information

USER S GUIDE. for the FEDERAL AVIATION ADMINISTRATION. MEDXPRESS System

USER S GUIDE. for the FEDERAL AVIATION ADMINISTRATION. MEDXPRESS System USER S GUIDE for the FEDERAL AVIATION ADMINISTRATION MEDXPRESS System Prepared for: The Department of Transportation, Federal Aviation Administration, Office of Aerospace Medicine, Washington, DC 20591

More information

PROTECTING INFORMATION SYSTEMS WITH FIREWALLS: REVISED GUIDELINES ON FIREWALL TECHNOLOGIES AND POLICIES

PROTECTING INFORMATION SYSTEMS WITH FIREWALLS: REVISED GUIDELINES ON FIREWALL TECHNOLOGIES AND POLICIES PROTECTING INFORMATION SYSTEMS WITH FIREWALLS: REVISED GUIDELINES ON FIREWALL TECHNOLOGIES AND POLICIES Shirley Radack, Editor Computer Security Division Information Technology Laboratory National Institute

More information

December 21, 2012. The services being procured through the proposed amendment are Hosting Services, and Application Development and Support for CITSS.

December 21, 2012. The services being procured through the proposed amendment are Hosting Services, and Application Development and Support for CITSS. Justification for a Contract Amendment to Contract 2012-01: Interim Hosting and Jurisdiction Functionality for the Compliance Instrument Tracking System Service (CITSS) December 21, 2012 Introduction WCI,

More information

70-646 R3: Windows Server 2008 Administration. Course Overview. Course Outline. Course Length: 4 Day

70-646 R3: Windows Server 2008 Administration. Course Overview. Course Outline. Course Length: 4 Day 70-646 R3: Windows Server 2008 Administration Course Length: 4 Day Course Overview This course will prepare the student for Exam 70-646: Pro: Windows Server 2008, Server Administrator. Topics covered include

More information

Information Technology Engineers Examination. Network Specialist Examination. (Level 4) Syllabus. Details of Knowledge and Skills Required for

Information Technology Engineers Examination. Network Specialist Examination. (Level 4) Syllabus. Details of Knowledge and Skills Required for Information Technology Engineers Examination Network Specialist Examination (Level 4) Syllabus Details of Knowledge and Skills Required for the Information Technology Engineers Examination Version 2.0

More information

How To Use Adobe Software For A Business

How To Use Adobe Software For A Business EXHIBIT FOR MANAGED SERVICES (2013V3) This Exhibit for Managed Services, in addition to the General Terms, the OnDemand Exhibit, and any applicable PDM, applies to any Managed Services offering licensed

More information

AIRSPACE WAIVERS AND FLIGHT AUTHORIZATIONS FOR CERTAIN AVIATION OPERATIONS (INCLUDING DCA) (Amended)

AIRSPACE WAIVERS AND FLIGHT AUTHORIZATIONS FOR CERTAIN AVIATION OPERATIONS (INCLUDING DCA) (Amended) for the AIRSPACE WAIVERS AND FLIGHT AUTHORIZATIONS FOR CERTAIN AVIATION OPERATIONS (INCLUDING DCA) (Amended) Contact Point Lisa S. Dean Privacy Officer Transportation Security Administration (571) 227-3947

More information

ORDER 3930.3B. National Policy. Effective Date 07/20/12. Air Traffic Control Specialist Health Program

ORDER 3930.3B. National Policy. Effective Date 07/20/12. Air Traffic Control Specialist Health Program National Policy ORDER 3930.3B Effective Date 07/20/12 SUBJ: Air Traffic Control Specialist Health Program The health of Air Traffic Control Specialists is important to the consistency of performance and

More information

Title 14: Aeronautics and Space PART 120 DRUG AND ALCOHOL TESTING PROGRAM

Title 14: Aeronautics and Space PART 120 DRUG AND ALCOHOL TESTING PROGRAM Subpart A General 120.1 Applicability. Title 14: Aeronautics and Space PART 120 DRUG AND ALCOHOL TESTING PROGRAM This part applies to the following persons: (a) All air carriers and operators certificated

More information

U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION National Policy

U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION National Policy U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION National Policy Order 1830.9 A 09/18/2009 SUBJ; Cellular/Satellite Device Acquisition and Management 1. Purpose of this order. The Federal

More information

PRIVACY IMPACT ASSESSMENT

PRIVACY IMPACT ASSESSMENT Name of System/Application: LAN/WAN PRIVACY IMPACT ASSESSMENT U. S. Small Business Administration LAN/WAN FY 2011 Program Office: Office of the Chief Information Officer A. CONTACT INFORMATION 1) Who is

More information

ASIA/PAC AERONAUTICAL TELECOMMUNICATION NETWORK SECURITY GUIDANCE DOCUMENT

ASIA/PAC AERONAUTICAL TELECOMMUNICATION NETWORK SECURITY GUIDANCE DOCUMENT INTERNATIONAL CIVIL AVIATION ORGANIZATION ASIA AND PACIFIC OFFICE ASIA/PAC AERONAUTICAL TELECOMMUNICATION NETWORK SECURITY GUIDANCE DOCUMENT DRAFT Second Edition June 2010 3.4H - 1 TABLE OF CONTENTS 1.

More information

Canine Website System (CWS System) DHS/TSA/PIA-036 January 13, 2012

Canine Website System (CWS System) DHS/TSA/PIA-036 January 13, 2012 for the (CWS System) DHS/TSA/PIA-036 January 13, 2012 Contact Point Carolyn Y. Dorgham Program Manager, National Explosives Detection Canine Team Program Carolyn.Dorgham@dhs.gov Reviewing Official Mary

More information

March 2012 www.tufin.com

March 2012 www.tufin.com SecureTrack Supporting Compliance with PCI DSS 2.0 March 2012 www.tufin.com Table of Contents Introduction... 3 The Importance of Network Security Operations... 3 Supporting PCI DSS with Automated Solutions...

More information

HEALTH INFORMATION TECHNOLOGY EXCHANGE OF CONNECTICUT

HEALTH INFORMATION TECHNOLOGY EXCHANGE OF CONNECTICUT HEALTH INFORMATION TECHNOLOGY EXCHANGE OF CONNECTICUT POLICY AND PROCEDURE 5 10 15 20 25 30 35 40 Policy Name/Subject: Policy Number: POLICY V1.0 2 Approval Date: 11-21-2011 Effective Date: 11-21- 2011

More information

Privacy Policy. February, 2015 Page: 1

Privacy Policy. February, 2015 Page: 1 February, 2015 Page: 1 Revision History Revision # Date Author Sections Altered Approval/Date Rev 1.0 02/15/15 Ben Price New Document Rev 1.1 07/24/15 Ben Price Verify Privacy Grid Requirements are met

More information

Managing and Maintaining Windows Server 2008 Servers

Managing and Maintaining Windows Server 2008 Servers Managing and Maintaining Windows Server 2008 Servers Course Number: 6430A Length: 5 Day(s) Certification Exam There are no exams associated with this course. Course Overview This five day instructor led

More information

ORDER 1370.108. National Policy. Effective Date 09/21/09. Voice Over Internet Protocol (VoIP) Security Policy SUBJ:

ORDER 1370.108. National Policy. Effective Date 09/21/09. Voice Over Internet Protocol (VoIP) Security Policy SUBJ: National Policy ORDER 1370.108 Effective Date 09/21/09 SUBJ: Voice Over Internet Protocol (VoIP) Security Policy 1. Purpose of This Order. This Order establishes the Federal Aviation Administration s (FAA)

More information

SUMMARY: On February 14, 2012, Congress mandated that the FAA, coordinating with the

SUMMARY: On February 14, 2012, Congress mandated that the FAA, coordinating with the [4910-13] DEPARTMENT OF TRANSPORTATION Federal Aviation Administration 14 CFR Part 91 [Docket No.: FAA-2013-0061] Unmanned Aircraft System Test Site Program AGENCY: Federal Aviation Administration (FAA),

More information

CHIS, Inc. Privacy General Guidelines

CHIS, Inc. Privacy General Guidelines CHIS, Inc. and HIPAA CHIS, Inc. provides services to healthcare facilities and uses certain protected health information (PHI) in connection with performing these services. Therefore, CHIS, Inc. is classified

More information

Department of Veterans Affairs VA Directive 6004 CONFIGURATION, CHANGE, AND RELEASE MANAGEMENT PROGRAMS

Department of Veterans Affairs VA Directive 6004 CONFIGURATION, CHANGE, AND RELEASE MANAGEMENT PROGRAMS Department of Veterans Affairs VA Directive 6004 Washington, DC 20420 Transmittal Sheet September 28, 2009 CONFIGURATION, CHANGE, AND RELEASE MANAGEMENT PROGRAMS 1. REASON FOR ISSUE: This Directive establishes

More information

InCompass, Privacy Impact Assessment (PIA) 8/3/2011

InCompass, Privacy Impact Assessment (PIA) 8/3/2011 DEPARTMENT OF TREASURY Washington, D.C. 20220 InCompass, Privacy Impact Assessment (PIA) 8/3/2011 A. Identification System Name: InCompass Former System Name: Integrated Talent Management (ITM) OMB Unique

More information

05.0 Application Development

05.0 Application Development Number 5.0 Policy Owner Information Security and Technology Policy Application Development Effective 01/01/2014 Last Revision 12/30/2013 Department of Innovation and Technology 5. Application Development

More information

United States Citizenship and Immigration Services (USCIS) Enterprise Service Bus (ESB)

United States Citizenship and Immigration Services (USCIS) Enterprise Service Bus (ESB) for the United States Citizenship and Immigration Services (USCIS) June 22, 2007 Contact Point Harry Hopkins Office of Information Technology (OIT) (202) 272-8953 Reviewing Official Hugo Teufel III Chief

More information

Trends in Aeronautical Information Management

Trends in Aeronautical Information Management Trends in Aeronautical Information Management AIXM 5 Public Design Review February 7-8, 2006 Washington DC 1 Our objective in this briefing is to tell you about an emerging standard for aeronautical data

More information

Software Update Bulletin

Software Update Bulletin Introducing SendSuite Tracking February 2010 Purpose This bulletin is released to advise SendSuite Tracking users of the new features, enhancements, and improvements in the evolution of the Internal Tracking

More information

WHITE PAPER. Support for the HIPAA Security Rule RadWhere 3.0

WHITE PAPER. Support for the HIPAA Security Rule RadWhere 3.0 WHITE PAPER Support for the HIPAA Security Rule RadWhere 3.0 SUMMARY This white paper is intended to assist Nuance customers who are evaluating the security aspects of the RadWhere 3.0 system as part of

More information

U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION. Air Traffic Organization Policy

U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION. Air Traffic Organization Policy U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION Air Traffic Organization Policy ORDER JO 1000.37A SUBJ: Air Traffic Organization Safety Management System Effective Date: 5/30/14 The mission

More information

Optus EmailSMS for MS Outlook and Lotus Notes

Optus EmailSMS for MS Outlook and Lotus Notes Optus EmailSMS for MS Outlook and Lotus Notes Service Description, August 2005. OVERVIEW This document provides an overview of the Optus EmailSMS service delivered jointly by Optus and redcoal. It highlights

More information

Work Performance Statement

Work Performance Statement Work Performance Statement Enterprise Date Services Service Management Tool Introduction Acronyms, and Abbreviations AQS FAA Office of Quality, Integration and Executive Services ARB Airmen Records Building

More information

Secure Data Transfer

Secure Data Transfer Secure Data Transfer INSTRUCTIONS 3 Options to SECURELY TRANSMIT DATA 1. FTP 2. WinZip 3. Password Protection Version 2.0 Page 1 Table of Contents Acronyms & Abbreviations...1 Option 1: File Transfer Protocol

More information

4 122 b. INFORMATION TECHNOLOGY Wide Area Network Idi-astructure (IT 10) POLICY STATEMENT

4 122 b. INFORMATION TECHNOLOGY Wide Area Network Idi-astructure (IT 10) POLICY STATEMENT MetropolitanTransportation Authority Wide Area Network Idi-astructure POLICY STATEMENT The Metropolitan Transportation Authority (LACMTA)maintains a wide area network (WAN),comprised of data and voice,

More information

E-Mail Secure Gateway (EMSG)

E-Mail Secure Gateway (EMSG) for the E-Mail Secure Gateway (EMSG) DHS/MGMT/PIA-006 March 22, 2012 Contact Point David Jones MGMT/OCIO/ITSO/ESDO DHS HQ (202) 447-0167 Reviewing Official Mary Ellen Callahan Chief Privacy Officer Department

More information

White Paper. Support for the HIPAA Security Rule PowerScribe 360

White Paper. Support for the HIPAA Security Rule PowerScribe 360 White Paper Support for the HIPAA Security Rule PowerScribe 360 2 Summary This white paper is intended to assist Nuance customers who are evaluating the security aspects of the PowerScribe 360 system as

More information

Arizona Health Information Exchange Marketplace. Requirements and Specifications Health Information Service Provider (HISP)

Arizona Health Information Exchange Marketplace. Requirements and Specifications Health Information Service Provider (HISP) Arizona Health Information Exchange Marketplace Requirements and Specifications Health Information Service Provider (HISP) Table of Contents Table of Contents... 1 Introduction... 2 Purpose... 3 Scope...

More information

United States Department of State Global Financial Management System (GFMS) Privacy Impact Assessment

United States Department of State Global Financial Management System (GFMS) Privacy Impact Assessment United States Department of State Global Financial Management System (GFMS) Privacy Impact Assessment CGFS/DCFO/GFMS 1. Contact Information Privacy Impact Assessment (PIA) Department of State Privacy Coordinator

More information

Airworthiness and Maintenance Requirements for U.S. Registered Aircraft

Airworthiness and Maintenance Requirements for U.S. Registered Aircraft Airworthiness and Maintenance Requirements for U.S. Registered Aircraft State of Registry Requirements Designee Limits and Requirements Maintenance Requirements Presented to: LACAC Members By: Jaime Insurriaga

More information

DATE DRAFT 8000.95 (For Internal FAA Coordination Only) U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION.

DATE DRAFT 8000.95 (For Internal FAA Coordination Only) U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION. DATE DRAFT 8000.95 U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION ORDER 8000.95 National Policy Effective Date: xx/xx/xx SUBJ: Designee Management Policy This Order is a comprehensive

More information

APPENDIX B - Forms for Implementing EDI

APPENDIX B - Forms for Implementing EDI APPENDIX B - Forms for Implementing EDI The (EDI) Information Request Form (IRF) is the means of conveying technical data for your organization to HUD prior to connecting to HUD s EDI Gateway. A completed

More information

Preparing for GO!Enterprise MDM On-Demand Service

Preparing for GO!Enterprise MDM On-Demand Service Preparing for GO!Enterprise MDM On-Demand Service This guide provides information on...... An overview of GO!Enterprise MDM... Preparing your environment for GO!Enterprise MDM On-Demand... Firewall rules

More information

Table of Contents. Section G: Contract Administration Data Mod: AA20: (Verizon) 10/05/09-GS11T08BJD6001

Table of Contents. Section G: Contract Administration Data Mod: AA20: (Verizon) 10/05/09-GS11T08BJD6001 Section Table of Contents Section G: Contract Administration Data Mod: AA20: (Verizon) 10/05/09- Page G.1 Contract Administration 1 G.1.1 Government Points of Contact 1 G.1.1.1 Procuring Contracting Officer

More information

DEPARTMENT OF VETERANS AFFAIRS VA DIRECTIVE 6517 CLOUD COMPUTING SERVICES

DEPARTMENT OF VETERANS AFFAIRS VA DIRECTIVE 6517 CLOUD COMPUTING SERVICES DEPARTMENT OF VETERANS AFFAIRS VA DIRECTIVE 6517 Washington, DC 20420 Transmittal Sheet February 28, 2012 CLOUD COMPUTING SERVICES 1. REASON FOR ISSUE: This Directive establishes the Department of Veterans

More information

Library Requirements

Library Requirements The Open Group Future Airborne Capability Environment (FACE ) Library Requirements Version 2.2 April 2015 Prepared by The Open Group FACE Consortium Business Working Group Library Subcommittee AMRDEC PR1201

More information

Security FAQs (Frequently Asked Questions) for Xerox Remote Print Services

Security FAQs (Frequently Asked Questions) for Xerox Remote Print Services Security FAQs (Frequently Asked Questions) for Xerox Remote Print Services February 30, 2012 2012 Xerox Corporation. All rights reserved. Xerox and Xerox and Design are trademarks of Xerox Corporation

More information

Aircraft Certification Service Policy. Aircraft Certification Information Resource Management (IRM) Governance Program

Aircraft Certification Service Policy. Aircraft Certification Information Resource Management (IRM) Governance Program Aircraft Certification Service Policy ORDER 1370.76B Effective Date: 09/28/2009 SUBJ: Aircraft Certification Information Resource Management (IRM) Governance Program 1. Purpose of this Order. a. This order

More information

MANAGED FILE TRANSFER: 10 STEPS TO SOX COMPLIANCE

MANAGED FILE TRANSFER: 10 STEPS TO SOX COMPLIANCE WHITE PAPER MANAGED FILE TRANSFER: 10 STEPS TO SOX COMPLIANCE 1. OVERVIEW Do you want to design a file transfer process that is secure? Or one that is compliant? Of course, the answer is both. But it s

More information

APPENDIX 8 TO SCHEDULE 3.3

APPENDIX 8 TO SCHEDULE 3.3 APPENDI 8 TO SCHEDULE 3.3 TO THE COMPREHENSIVE INFRASTRUCTURE AGREEMENT APPENDI 8 TO SCHEDULE 3.3 TO THE COMPREHENSIVE INFRASTRUCTURE AGREEMENT APPENDI 8 TO SCHEDULE 3.3 TO THE COMPREHENSIVE INFRASTRUCTURE

More information

Crew Member Self Defense Training (CMSDT) Program

Crew Member Self Defense Training (CMSDT) Program for the Crew Member Self Defense Training (CMSDT) Program February 6, 2008 Contact Point Michael Rigney Federal Air Marshal Service Flight Programs Division Michael.Rigney@dhs.gov Reviewing Officials Peter

More information

Please Note: Temporary Graduate 485 skills assessments applicants should only apply for ANZSCO codes listed in the Skilled Occupation List above.

Please Note: Temporary Graduate 485 skills assessments applicants should only apply for ANZSCO codes listed in the Skilled Occupation List above. ANZSCO Descriptions This ANZSCO description document has been created to assist applicants in nominating an occupation for an ICT skill assessment application. The document lists all the ANZSCO codes that

More information

Applicants are required to file an original and five (5) paper copies.

Applicants are required to file an original and five (5) paper copies. APPLICATION FOR A CERTIFICATE OF TERRITORIAL AUTHORITY FOR COMMUNICATIONS SERVICE PROVIDERS State Form 52648 (R5 / 8-11) INDIANA UTILITY REGULATORY COMMISSION Applicants are required to file an original

More information

Department of Homeland Security Web Portals

Department of Homeland Security Web Portals for the Department of Homeland Security Web Portals June 15, 2009 Contact Point Mary Ellen Callahan Chief Privacy Officer Department of Homeland Security (703) 235-0780 Page 2 Abstract Many Department

More information

iphone in Business Mobile Device Management

iphone in Business Mobile Device Management 19 iphone in Business Mobile Device Management iphone supports Mobile Device Management, giving businesses the ability to manage scaled deployments of iphone across their organizations. These Mobile Device

More information

Software Review Job Aid - Supplement #1

Software Review Job Aid - Supplement #1 Software Review Job Aid - Supplement #1 1010011101010011110001101001101101101101000100100010101011100010110 1010011101010011110001101001101101101101000100101110101011100010111 0110100110110110110100010010001010101110001011000100111010100111100

More information

AVIATION SPECIALIST. Inspects aviation schools for conformance with state laws, rules, and regulations.

AVIATION SPECIALIST. Inspects aviation schools for conformance with state laws, rules, and regulations. MICHIGAN CIVIL SERVICE COMMISSION JOB SPECIFICATION AVIATION SPECIALIST JOB DESCRIPTION Employees in this job complete and oversee a variety of professional assignments to promote aviation education and

More information

U.S. DEPARTMENT OF TRANSPORTATION

U.S. DEPARTMENT OF TRANSPORTATION U.S. DEPARTMENT OF TRANSPORTATION FEDERAL AVIATION ADMINISTRATION National Policy ORDER 8000.95 Effective Date: 04/11/14 SUBJ: Designee Management Policy This Order is a comprehensive publication establishing

More information

BCIS 4680 -- BUSINESS DATA COMMUNICATIONS and NETWORKING Mr. Cengiz Capan -- Spring 2016

BCIS 4680 -- BUSINESS DATA COMMUNICATIONS and NETWORKING Mr. Cengiz Capan -- Spring 2016 Office : BLB 290E, Business Leadership Building Office Hours: Tu &Th 9:00 am - 11:00 am, or by appointment/drop-in Telephone: 940-565-4660 Web Page: http://www.coba.unt.edu/bcis/faculty/capan/capan.htm

More information

CASE MATTER MANAGEMENT TRACKING SYSTEM

CASE MATTER MANAGEMENT TRACKING SYSTEM for the CASE MATTER MANAGEMENT TRACKING SYSTEM September 25, 2009 Contact Point Mr. Donald A. Pedersen Commandant (CG-0948) (202) 372-3818 Reviewing Official Mary Ellen Callahan Chief Privacy Officer Department

More information

Introduction to Endpoint Security

Introduction to Endpoint Security Chapter Introduction to Endpoint Security 1 This chapter provides an overview of Endpoint Security features and concepts. Planning security policies is covered based on enterprise requirements and user

More information

BEFORE THE BOARD OF COUNTY COMMISSIONERS FOR MULTNOMAH COUNTY, OREGON RESOLUTION NO. 05-050

BEFORE THE BOARD OF COUNTY COMMISSIONERS FOR MULTNOMAH COUNTY, OREGON RESOLUTION NO. 05-050 BEFORE THE BOARD OF COUNTY COMMISSIONERS FOR MULTNOMAH COUNTY, OREGON RESOLUTION NO. 05-050 Adopting Multnomah County HIPAA Security Policies and Directing the Appointment of Information System Security

More information

Privacy Impact Assessment

Privacy Impact Assessment Technology, Planning, Architecture, & E-Government Version: 1.1 Date: April 14, 2011 Prepared for: USDA OCIO TPA&E Privacy Impact Assessment for the April 14, 2011 Contact Point Charles McClam Deputy Chief

More information

FAA MEDXPRESS: Get in the Express Lane to Medical Certification HOW TO CREATE AN ACCOUNT

FAA MEDXPRESS: Get in the Express Lane to Medical Certification HOW TO CREATE AN ACCOUNT FAA MEDXPRESS: Get in the Express Lane to Medical Certification The Federal Aviation Administration s MedXPress system allows anyone requiring an FAA Medical Certificate or Student Pilot Medical Certificate

More information

Information Security Program Management Standard

Information Security Program Management Standard State of California California Information Security Office Information Security Program Management Standard SIMM 5305-A September 2013 REVISION HISTORY REVISION DATE OF RELEASE OWNER SUMMARY OF CHANGES

More information

National Identity Exchange Federation (NIEF) Trustmark Signing Certificate Policy. Version 1.1. February 2, 2016

National Identity Exchange Federation (NIEF) Trustmark Signing Certificate Policy. Version 1.1. February 2, 2016 National Identity Exchange Federation (NIEF) Trustmark Signing Certificate Policy Version 1.1 February 2, 2016 Copyright 2016, Georgia Tech Research Institute Table of Contents TABLE OF CONTENTS I 1 INTRODUCTION

More information

APPROVED BY: DATE: NUMBER: PAGE: 1 of 9

APPROVED BY: DATE: NUMBER: PAGE: 1 of 9 1 of 9 PURPOSE: To define standards for appropriate and secure use of MCG Health electronic systems, specifically e-mail systems, Internet access, phones (static or mobile; including voice mail) wireless

More information

Department of Veterans Affairs VA DIRECTIVE 6510 VA IDENTITY AND ACCESS MANAGEMENT

Department of Veterans Affairs VA DIRECTIVE 6510 VA IDENTITY AND ACCESS MANAGEMENT Department of Veterans Affairs VA DIRECTIVE 6510 Washington, DC 20420 Transmittal Sheet VA IDENTITY AND ACCESS MANAGEMENT 1. REASON FOR ISSUE: This Directive defines the policy and responsibilities to

More information

Windows Server 2003 Active Directory: Perspective

Windows Server 2003 Active Directory: Perspective Mary I. Hubley, MaryAnn Richardson Technology Overview 25 September 2003 Windows Server 2003 Active Directory: Perspective Summary The Windows Server 2003 Active Directory lies at the core of the Windows

More information

NASA Information Technology Requirement

NASA Information Technology Requirement NASA Information Technology Requirement NITR-2800-2 Effective Date: September 18,2009 Expiration Date: September 18, 2013 Email Services and Email Forwarding Responsible Office: OCIO/ Chief Information

More information

APPENDIX 8 TO SCHEDULE 3.3

APPENDIX 8 TO SCHEDULE 3.3 EHIBIT Q to Amendment No. 60 - APPENDI 8 TO SCHEDULE 3.3 TO THE COMPREHENSIVE INFRASTRUCTURE AGREEMENT APPENDI 8 TO SCHEDULE 3.3 TO THE COMPREHENSIVE INFRASTRUCTURE AGREEMENT EHIBIT Q to Amendment No.

More information

THE OSI REFERENCE MODEL LES M C LELLAN DEAN WHITTAKER SANDY WORKMAN

THE OSI REFERENCE MODEL LES M C LELLAN DEAN WHITTAKER SANDY WORKMAN THE OSI REFERENCE MODEL LES M C LELLAN DEAN WHITTAKER SANDY WORKMAN OVERVIEW THE NEED FOR STANDARDS OSI - ORGANISATION FOR STANDARDISATION THE OSI REFERENCE MODEL A LAYERED NETWORK MODEL THE SEVEN OSI

More information

Chapter 5. Data Communication And Internet Technology

Chapter 5. Data Communication And Internet Technology Chapter 5 Data Communication And Internet Technology Purpose Understand the fundamental networking concepts Agenda Network Concepts Communication Protocol TCP/IP-OSI Architecture Network Types LAN WAN

More information

MANAGED FILE TRANSFER: 10 STEPS TO HIPAA/HITECH COMPLIANCE

MANAGED FILE TRANSFER: 10 STEPS TO HIPAA/HITECH COMPLIANCE WHITE PAPER MANAGED FILE TRANSFER: 10 STEPS TO HIPAA/HITECH COMPLIANCE 1. OVERVIEW Do you want to design a file transfer process that is secure? Or one that is compliant? Of course, the answer is both.

More information

Improving Agility at PHMSA through Service-Oriented Architecture (SOA)

Improving Agility at PHMSA through Service-Oriented Architecture (SOA) Leveraging People, Processes, and Technology Improving Agility at PHMSA through Service-Oriented Architecture (SOA) A White Paper Author: Rajesh Ramasubramanian, Program Manager 11 Canal Center Plaza,

More information

CONCEPT OF OPERATIONS FOR THE SWIM COMMON REGISTRY (SCR)

CONCEPT OF OPERATIONS FOR THE SWIM COMMON REGISTRY (SCR) CONCEPT OF OPERATIONS FOR THE SWIM COMMON REGISTRY (SCR) FAA/SESAR APRIL 2015 Preface The proposed SWIM Common Registry (SCR) is envisioned as a comprehensive, systematic, and dynamic mechanism for publishing,

More information

DEPARTMENTAL REGULATION

DEPARTMENTAL REGULATION U.S. DEPARTMENT OF AGRICULTURE WASHINGTON, D.C. 20250 DEPARTMENTAL REGULATION SUBJECT: Identity, Credential, and Access Management Number: 3640-001 DATE: December 9, 2011 OPI: Office of the Chief Information

More information

PROCEDURE 1310.26 Issued: October 5, 2001 Effective Date: September 14, 2000

PROCEDURE 1310.26 Issued: October 5, 2001 Effective Date: September 14, 2000 PROCEDURE 1310.26 Issued: October 5, 2001 Effective Date: September 14, 2000 SUBJECT: APPLICATION: PURPOSE: CONTACT AGENCY: Customer Service Center Functional Standard Executive Branch Departments and

More information

MICHIGAN AUDIT REPORT OFFICE OF THE AUDITOR GENERAL THOMAS H. MCTAVISH, C.P.A. AUDITOR GENERAL

MICHIGAN AUDIT REPORT OFFICE OF THE AUDITOR GENERAL THOMAS H. MCTAVISH, C.P.A. AUDITOR GENERAL MICHIGAN OFFICE OF THE AUDITOR GENERAL AUDIT REPORT THOMAS H. MCTAVISH, C.P.A. AUDITOR GENERAL The auditor general shall conduct post audits of financial transactions and accounts of the state and of all

More information

Privacy Impact Assessment. For Person Authentication Service (PAS) Date: January 9, 2015

Privacy Impact Assessment. For Person Authentication Service (PAS) Date: January 9, 2015 For Person Authentication Service (PAS) Date: January 9, 2015 Point of Contact and Author: Hanan Abu Lebdeh Hanan.Abulebdeh@ed.gov System Owner: Ganesh Reddy Ganesh.Reddy@ed.gov Office of Federal Student

More information

PROCEDURE. Part 3.1: Metering Service Provider (MSP) Registration, Revocation, and Deregistration PUBLIC. Market Manual 3: Metering. Issue 14.

PROCEDURE. Part 3.1: Metering Service Provider (MSP) Registration, Revocation, and Deregistration PUBLIC. Market Manual 3: Metering. Issue 14. PUBLIC MDP_PRO_0007 PROCEDURE Market Manual 3: Metering Part 3.1: Metering Service Provider (MSP) Registration, Revocation, and Deregistration Issue 14.0 This document provides an overview of the steps

More information

FHFA. Privacy Impact Assessment Template FM: SYSTEMS (SYSTEM NAME)

FHFA. Privacy Impact Assessment Template FM: SYSTEMS (SYSTEM NAME) FHFA Privacy Impact Assessment Template FM: SYSTEMS (SYSTEM NAME) This template is used when the Chief Privacy Officer determines that the system contains Personally Identifiable Information and a more

More information

Troubleshooting BlackBerry Enterprise Service 10 version 10.1.1 726-08745-123. Instructor Manual

Troubleshooting BlackBerry Enterprise Service 10 version 10.1.1 726-08745-123. Instructor Manual Troubleshooting BlackBerry Enterprise Service 10 version 10.1.1 726-08745-123 Instructor Manual Published: 2013-07-02 SWD-20130702091645092 Contents Advance preparation...7 Required materials...7 Topics

More information

Support for the HIPAA Security Rule

Support for the HIPAA Security Rule WHITE PAPER Support for the HIPAA Security Rule PowerScribe 360 Reporting v2.0 HEALTHCARE 2 SUMMARY This white paper is intended to assist Nuance customers who are evaluating the security aspects of PowerScribe

More information

Microsoft Windows Server System White Paper

Microsoft Windows Server System White Paper Introduction to Network Access Protection Microsoft Corporation Published: June 2004, Updated: May 2006 Abstract Network Access Protection, a platform for Microsoft Windows Server "Longhorn" (now in beta

More information

Directory Services and Email System (DSES)

Directory Services and Email System (DSES) for the Directory Services and Email System (DSES) Contact Point James Kief Functional Area Manager Department of Homeland Security/US Coast Guard (304) 264-2573 Reviewing Official Hugo Teufel III Chief

More information

Standards for Identity & Authentication. Catherine J. Tilton 17 September 2014

Standards for Identity & Authentication. Catherine J. Tilton 17 September 2014 Standards for Identity & Authentication Catherine J. Tilton 17 September 2014 Purpose of these standards Wide deployment of authentication technologies that may be used in a global context is heavily dependent

More information

SCHEDULE 1 SERVICE DESCRIPTION

SCHEDULE 1 SERVICE DESCRIPTION SCHEDULE 1 SERVICE DESCRIPTION . Introduction Service Description a) Accreditation Process The Service Provider ( SP ) wishing to be approved by Borsa Italiana as an accredited Service Provider who can

More information

Information Supplement: Requirement 6.6 Code Reviews and Application Firewalls Clarified

Information Supplement: Requirement 6.6 Code Reviews and Application Firewalls Clarified Standard: Data Security Standard (DSS) Requirement: 6.6 Date: February 2008 Information Supplement: Requirement 6.6 Code Reviews and Application Firewalls Clarified Release date: 2008-04-15 General PCI

More information

MARKET SURVEY FOR FEDERAL AVIATION ADMINISTRATION (FAA) Office of the Assistant Administration of Human Resources (AHR) Benefits and Work Life

MARKET SURVEY FOR FEDERAL AVIATION ADMINISTRATION (FAA) Office of the Assistant Administration of Human Resources (AHR) Benefits and Work Life 1. Objective MARKET SURVEY FOR FEDERAL AVIATION ADMINISTRATION (FAA) Office of the Assistant Administration of Human Resources (AHR) Benefits and Work Life The Federal Aviation Administration s Office

More information

---Information Technology (IT) Specialist (GS-2210) IT Security Competency Model---

---Information Technology (IT) Specialist (GS-2210) IT Security Competency Model--- ---Information Technology (IT) Specialist (GS-2210) IT Security Model--- TECHNICAL COMPETENCIES Computer Forensics Knowledge of tools and techniques pertaining to legal evidence used in the analysis of

More information

Managed File Transfer in Enterprise Java Applications

Managed File Transfer in Enterprise Java Applications Managed File Transfer in Enterprise Java Applications By David Sims Flux I: Why Should You Care About Managed File Transfer? In an SOA world, bulk data transfer occurs largely by way of file transfer.

More information

Mobile Network Access Control

Mobile Network Access Control Mobile Network Access Control Extending Corporate Security Policies to Mobile Devices WHITE PAPER Executive Summary Network Access Control (NAC) systems protect corporate assets from threats posed by devices

More information

Privacy Impact Assessment (PIA) Waiver Review System (WRS) Version 03.06.01.01. Last Updated: December 2, 2013

Privacy Impact Assessment (PIA) Waiver Review System (WRS) Version 03.06.01.01. Last Updated: December 2, 2013 United States Department of State (PIA) Waiver Review System (WRS) Version 03.06.01.01 Last Updated: December 2, 2013 Bureau of Administration 1. Contact Information Department of State Privacy Coordinator

More information

Justice Information Sharing Division ( ND CJIS ), and

Justice Information Sharing Division ( ND CJIS ), and Criminal Justice Information Sharing Division (ND CJIS) Office of the Attorney General 600 E Blvd Ave, Dept 125 Bismarck ND 58505 Office: (701) 328-1110 Fax: (701) 328-2226 P1 LERMS AGENCY AGREEMENT This

More information

NETWORK ACCESS CONTROL AND CLOUD SECURITY. Tran Song Dat Phuc SeoulTech 2015

NETWORK ACCESS CONTROL AND CLOUD SECURITY. Tran Song Dat Phuc SeoulTech 2015 NETWORK ACCESS CONTROL AND CLOUD SECURITY Tran Song Dat Phuc SeoulTech 2015 Table of Contents Network Access Control (NAC) Network Access Enforcement Methods Extensible Authentication Protocol IEEE 802.1X

More information

Information Technology Security Guideline. Network Security Zoning

Information Technology Security Guideline. Network Security Zoning Information Technology Security Guideline Network Security Zoning Design Considerations for Placement of s within Zones ITSG-38 This page intentionally left blank. Foreword The Network Security Zoning

More information

UNITED STATES DEPARTMENT OF EDUCATION OFFICE OF INSPECTOR GENERAL

UNITED STATES DEPARTMENT OF EDUCATION OFFICE OF INSPECTOR GENERAL UNITED STATES DEPARTMENT OF EDUCATION OFFICE OF INSPECTOR GENERAL THE INSPECTOR GENERAL October 12, 2006 The Honorable Karen S. Evans Administrator for Electronic Government and Information Technology

More information