ODNI/NCIX SPECIAL SECURITY CENTER Security Education & Training Program Course Descriptions

Similar documents
Personal Data Security Breach Management Policy

CASSOWARY COAST REGIONAL COUNCIL POLICY ENTERPRISE RISK MANAGEMENT

ITIL Service Offerings & Agreement (SOA) Certification Program - 5 Days

Looking Back at the First S.A.M.E. Infrastructure Forum Project Management Best Practices Training Seminar

ITIL Release Control & Validation (RCV) Certification Program - 5 Days

Research Report. Abstract: The Emerging Intersection Between Big Data and Security Analytics. November 2012

Revised October 27, 2011 Page 1 of 6

CMS Eligibility Requirements Checklist for MSSP ACO Participation

POLICY 1390 Information Technology Continuity of Business Planning Issued: June 4, 2009 Revised: June 12, 2014

Project Management Professional Development Program

Audit Committee Charter

PENETRATION TEST OF THE INDIAN HEALTH SERVICE S COMPUTER NETWORK

ITIL V3 Planning, Protection and Optimization (PPO) Certification Program - 5 Days

AACSB Assurance of Learning Goals and Objectives.

GUIDELINE INFORMATION MANAGEMENT (IM) PROGRAM PLAN

University of Toronto Interprofessional Education Curriculum/Program

Request for Resume (RFR) CATS II Master Contract. All Master Contract Provisions Apply

HIPAA Compliance 101. Important Terms. Pittsburgh Computer Solutions

Business Continuity Management Systems Foundation Training Course

GUIDANCE FOR BUSINESS ASSOCIATES

REQUEST FOR PROPOSAL SECURITY SERVICES

Chapter 7 Business Continuity and Risk Management

Managing Bio-Medical Wastes CCR TITLE 8, CA H & S CODE, PART 14

COPIES-F.Y.I., INC. Policies and Procedures Data Security Policy

Planning a Successful State LEADS Program

Enterprise Security Management CIS 259

Sources of Federal Government and Employee Information

Project Management Professional Preparation for Certification CIE 5017 Five 8-hour days (4.0 CEUs)

Information Security Incident Response Plan

Security Services. Service Description Version Effective Date: 07/01/2012. Purpose. Overview

SECTION J QUALITY ASSURANCE AND IMPROVEMENT PROGRAM

Version Date Comments / Changes 1.0 January 2015 Initial Policy Released

BLUE RIDGE COMMUNITY AND TECHNICAL COLLEGE BOARD OF GOVERNORS

Version: Modified By: Date: Approved By: Date: 1.0 Michael Hawkins October 29, 2013 Dan Bowden November 2013

POSITION DESCRIPTION. Classification Higher Education Worker, Level 7. Responsible to. I.T Manager. The Position

Nebraska Parenting Act Divorce and Separation Parenting Education Provider Information 2015 Application

Presentation: The Demise of SAS 70 - What s Next?

How To Write An Ehsms Training, Awareness And Competency Procedure

Succession Planning & Leadership Development: Your Utility s Bridge to the Future

2008 BA Insurance Systems Pty Ltd

Strategic Goal 2. Timely, Accurate, and Responsive Customer Service U.S. OFFICE OF PERSONNEL MANAGEMENT RECRUIT, RETAIN, AND HONOR

Process for Responding to Privacy Breaches

THIRD PARTY PROCUREMENT PROCEDURES

Duty Statement Manager The Early Years at Seymour (TEYS)

WEB APPLICATION SECURITY TESTING

Army DCIPS Employee Self-Report of Accomplishments Overview Revised July 2012

By offering the Study Abroad Scholarship, we hope to make your study abroad experience much more affordable!

WITS Implementation Toolkit. For All Substance Use Disorder Network Service Providers

2 DAY TRAINING THE BASICS OF PROJECT MANAGEMENT

VET395- HUMAN RESOURCES

April 29, 2013 INTRODUCTION ORGANIZATIONAL OVERVIEW PROJECT OVERVIEW

ENTERPRISE RISK MANAGEMENT ENTERPRISE RISK MANAGEMENT POLICY

Systems Load Testing Appendix

General Records Authority 33. Accredited Training

GFWC Leadership Education and Development Seminar (LEADS)

MANITOBA SECURITIES COMMISSION STRATEGIC PLAN

Key Steps for Organizations in Responding to Privacy Breaches

Effective Business Writing

17 Construction environmental management plan (CEMP)

Datasheet. PV4E Management Software Features

ready. aiim. learn. 2-day BPM Specialist Training Class - Learn global best practices for improving business processes

INFRASTRUCTURE TECHNICAL LEAD

Research Report. Abstract: Advanced Malware Detection and Protection Trends. September 2013

9 ITS Standards Specification Catalog and Testing Framework

UNIVERSITY INCIDENT PLANNING COMMITTEE TERMS OF REFERENCE

Gravesham Borough Council

Phi Kappa Sigma International Fraternity Insurance Billing Methodology

MSB FINANCIAL CORP. MILLINGTON BANK AUDIT COMMITTEE CHARTER

ICD-10 Frequently Asked Questions: (resource CMS website)

POSITION: Palliative Care Registered Nurse Division 1. Coordinator Nursing Services. Nicholson Street, Fitzroy North. DATE: December 2015

ATTACHMENT U THIRD PARTY AUDITOR/CONSULTANT QUALIFICATION GUIDELINE

Chris Chiron, Interim Senior Director, Employee & Management Relations Jessica Moore, Senior Director, Classification & Compensation

Audit Committee Charter. St Andrew s Insurance (Australia) Pty Ltd St Andrew s Life Insurance Pty Ltd St Andrew s Australia Services Pty Ltd

RUTGERS POLICY. Responsible Executive: Vice President for Information Technology and Chief Information Officer

Basics of Supply Chain Management

Required Articles Cervone, H. F. (2004). How not to run a digital library project. OCLC Systems & Services, OCLC Syst. Serv. (UK), 20(4),

April 1 June 30, 2011

VCU Payment Card Policy

OnX is uniquely positioned to help your organization rapidly gain the necessary skills to enable the successful deployment of SDN.

CCHIIM ICD-10 Continuing Education Requirements for AHIMA Certified Professionals (& Frequently Asked Questions for Recertification)

Introduction to FedRAMP Abel Sussman. June, 2015

CCHIIM ICD-10 Continuing Education Requirements for AHIMA Certified Professionals (& Frequently Asked Questions for Recertification)

IN-HOUSE OR OUTSOURCED BILLING

University of Texas at Dallas Policy for Accepting Credit Card and Electronic Payments

Project Open Hand Atlanta. Health Insurance Portability and Accountability Act (HIPAA) NOTICE OF PRIVACY PRACTICES

Human Resources Policy pol-020

IT CHANGE MANAGEMENT POLICY

How To Ensure Your Health Care Is Safe

Resident Assistant Application JOB DESCRIPTION

Course duration: to Classroom location: Angus 132

Community Support Programs N9 Organizational Internship Program

TITLE: RECORDS AND INFORMATION MANAGEMENT POLICY

STARplex Fitness Centre Manager

Creating an Ethical Culture and Protecting Your Bottom Line:

FINANCIAL OPTIONS. 2. For non-insured patients, payment is due on the day of service.

Service Level Agreement (SLA) Hosted Products. Netop Business Solutions A/S

Change Management Process

COE: Hybrid Course Request for Proposals. The goals of the College of Education Hybrid Course Funding Program are:

NC3A SOA Techwatch Day Call for Presentations

Transcription:

ODNI/NCIX SPECIAL SECURITY CENTER Security Educatin & Training Prgram Curse Descriptins PLEASE READ: Cntractrs must have apprving Gvernment Supervisr, POC r COTR email dni-ssc-training@dni.gv with cncurrence fr attendance Clearance verified in Scattered Castles/JPAS; d nt send unless requested N csts t yu r spnsring agency fr curse participatin. Yu are respnsible fr yur travel/htel/perdiem Curses may have students frm ur Cmmnwealth Partner Cuntries. Please cntact us if this may impact yur attendance. DNI/SSC ICD 503 IT SYSTEMS SECURITY RISK MANAGEMENT, ASSESSMENT & AUTHORIZATION FOR THE INTELLIGENCE COMMUNITY COURSE PURPOSE: This curse is designed fr Infrmatin System Security and Infrmatin Assurance Prfessinals respnsible fr implementing and assessing security plicies, practices, prcedures and technlgies. The curse will cver implementatin and cnduct f Intelligence Cmmunity (IC) infrmatin systems assessment, authrizatin, risk management and cntinuus mnitring in accrdance with ICD 503. We will prvide students with new methds and appraches t assessing and authrizing IT systems within the Intelligence Cmmunity. The curse will deliver applicable natinal security level guidelines and methdlgies with specific fcus n IC Standards, plans, methds, prcesses, and templates. Yu will becme familiar with IC 503 templates and prcesses thrugh case studies and exercises. LENGTH: 5 days / 8:00 4:30 (8:00 12:30 n Friday) TARGET: Federal gvernment civilians, military persnnel, State, Lcal and Tribal gvernments, Cmmnwealth Partners and gvernment cntractrs wh are directly invlved in the assessment and authrizatin f IC infrmatin systems in accrdance with ICD 503 and assciated IC Standards. The subject matter expertise addressed in the seminar are (ICD 503): System Categrizatin Security Cntrls and Assessment Risk Assessment System Authrizatin Cntinuus Mnitring Prtectin f IT equipment and media MATERIALS: This curse is taught at the UNCLASSIFIED level. Knwledge f ICD 503, Infrmatin Technlgy Systems Security Risk Management, Certificatin, and Accreditatin; Experience and/r knwledge f DCID 6/3, JFAN 6/3 r DIACAP; Understanding f IT netwrks, systems, terminlgy and System Develpment Life Cycle (SDLC) Familiarizatin with NIST Special Publicatin 800-37 Revisin 1, Guide fr Applying the Risk Management Framewrk t Federal Infrmatin Systems, CNSSI 1253, and NIST SP 800-53 Revisin 3, SP 800-39, SP 800-30. Revised 2-1-11 Page 1 f 5

DNI/SSC ICD 704 ADJUDICATIONS COURSE PURPOSE: This curse prepares yu t make adjudicative decisins cnsistent with ICD 704 requirements. We will prvide appraches t enhance best practices and reciprcity acrss the Intelligence Cmmunity and DD rganizatins authrized t grant access and adjudicate fr Sensitive Cmpartmented Infrmatin. We will explain the adjudicatin prcess and what needs t be cnsidered t upgrade an individual t anther clearance and/r access level. Als an excellent seminar fr a security prfessinal wh wants t understand the prcess behind adjudicatin decisins. TARGET: Persnnel perfrming backgrund checks, clearance upgrades and adjudicatins. Als t enhance knwledge fr the well runded career security prfessinal. SECRET clearance Please review ICD 704 prir t attending curse. DNI/SSC ICD 705 PHYSICAL SECURITY COURSE PURPOSE: This curse prepares yu t implement the cnstructin and security prtectin standards required fr all US Gvernment facilities r US Gvernment spnsred cntractr facilities where Sensitive Cmpartmented Infrmatin (SCI) r Special Access Prgram (SAP) material may be stred, used, discussed and/r prcessed. Discussin includes planning and defining requirements, site selectin, design, cnstructin, certificatin and accreditatin, peratins, and dispsal. Yu will discuss current physical security cncerns f their respective rganizatins and brainstrm slutins. TARGET: Federal gvernment civilians, military persnnel and gvernment cntractrs respnsible fr the physical planning and implementatin f SCI and SAP facilities. SECRET clearance Please review the fllwing dcuments prir t curse attendance: IC Directive 705, Sensitive Cmpartmented Infrmatin Facilities (SCIFs) IC Standard 705-1, Physical and Technical Standards fr SCIFs IC Standard 705-2, Standards fr Accreditatin and Reciprcal Use f SCIFs Revised 2-1-11 Page 2 f 5

DNI/SSC SPECIAL SECURITY OFFICER COURSE (SSOC) PURPOSE: Prepare security prfessinals wh administer SCI prgrams. We will familiarize yu with security DCIDs and SCI plicies and cmpartments. We use practical implementatin exercises t give hands-n experience. The class is divided int teams with an assigned facilitatr fr individual attentin. The tpics include: Structure f Intelligence Cmmunity Security Incidents and Investigatins Business and Security Interfaces Special Access Prgrams Physical Security (ICD 705) Persnnel Security (ICD 704) Infrmatin Systems Security (ICD 503) experience TARGET: Security prfessinals wh administer all aspects f SCI prgrams Attendees must have TS/ SCI and 2-5 years security experience Gvernment persnnel ONLY DNI/SSC MID-LEVEL SECURITY PROFESSIONAL SEMINAR (MSPS) PURPOSE: Expse mid-level security fficers t security issues and perspectives that prepare them fr psitins f greater respnsibility in the security prfessin. The MSPS is the middle step in a three level cmprehensive training develpment hierarchy fr IC Security Prfessinals. The MSPS cntains practical implementatin exercises t give hands-n experience. The class is divided int teams with an assigned instructr/facilitatr fr individual attentin. The tpics include: Security Challenges Ahead Security frm Multiple Perspectives IC Security Plicy: Changes and Current Trends Analytical Risk Management (Mid-Level) Supervisry Grwth and Management Challenges Leading an Effective Security Organizatin Infrmatin Systems Security in Transitin Physical and Technical Security in Transitin Persnnel Security Tday Achieving Excellence in Security Management Being a Security Leader f Integrity Cmmunicating Security fr Success Decisin Making fr the Security Manager Making the Mst f Yur Security Career TARGET: Security Managers wh administer all aspects f SCI prgrams Attendees must have TS/ SCI and 5-10 years security experience/gs11-gs13 Gvernment persnnel ONLY Revised 2-1-11 Page 3 f 5

DNI/SSC SENIOR SECURITY PROFESSIONAL SEMINAR (SSPS) PURPOSE: Expse the next generatin f security managers and leaders t cmmunity best practices and prvide a resurce fr develping effective prgram managers and leaders. Best practices and management philsphies will be wven thrughut the seminar. We will engage participants in highly interactive discussins with tp-ntch security practitiners as presenters and facilitatrs. Exercises are utilized thrughut the week t emphasize learning pints and facilitate discussins. Each day will have a primary fcus discussing principles in managing cmplex and integrated security prgrams. The tpics include: Cnflict Reslutin Mtivatin by Cmmunicatin Decisin Making Advanced ARM Vilence in the Wrkplace Security Management in a New Decade Fundatins f a CI Prfessin Security Ht Tpics Sptlight Panel (security leaders frm different IC agencies) Keynte guest speakers frm different IC agencies LENGTH: 5 days: begins n Sunday at 4pm and cncludes Friday nn (must stay n-site) TARGET: Security prfessinals and managers COST: Yu are respnsible fr per diem fr accmmdatins and meals MATERIALS: UNCLASSIFIED --Gvernment Persnnel Only GS 14-15 r equivalent with minimum 10 years security experience Requires an emailed letter f recmmendatin frm rganizatinal supervisr t dni-ssc-training@dni.gv Revised 2-1-11 Page 4 f 5

DNI/SSC SENSITIVE COMPARTMENTED INFORMATION (SCI) OVERVIEW SEMINAR The curses belw are currently being cnverted int Web-based training. Cnsideratin will be made t hld a curse live n-site by request, with a minimum f 75 participants. Cntact dni-ssc-training@dni.gv fr mre infrmatin. PURPOSE: Mdule 1- Welcme t Intelligence Cmmunity (IC) Security: A thrugh SCI security expsure fr recently SCI-apprved persnnel, r fr thse that d nt handle SCI as part f their daily wrk lives. The sessin allws yu t walk away with a slid security fundatin and an understanding f yur respnsibilities. It prvides basic knwledge needed t prtect classified activities, prcedures, systems, and facilities. Mdule 2 Intelligence Cmmunity Security Tday: Highlight key security pints frm Mdule 1, and prvide a greater fcus n changes within security in a pst 9/11 wrld. This sessin is useful as a refresher fr security practitiners, and as an update f current security changes. Mdule 3 - Classificatin Management: Prvide a general understanding f classificatin management and hw t prperly mark dcuments. This sessin explains the basic elements f classificatin management, what we are prtecting and hw t d it. Yu will be briefed n safeguarding prcedures, the basic elements f E.O. 12958, derivative classificatin authrities and we cnclude with a classificatin exercise. Mdule 4 Unauthrized Disclsures: Explains prblems surrunding unauthrized disclsures and prvides security fficers the tls t effectively respnd t issue f unauthrized disclsures. Yu will be briefed n the laws and will gain insight int damage dne by unauthrized disclsures. We will als explain respnsibilities and requirements under ICD 701. Mdule 5 Living Within a Sensitive Cmpartmented Infrmatin Facility (SCIF): Expse attendees t principles and practices fr the prtectin and management f infrmatin within the cnfines f a SCIF. A basic verview f access cntrl, escrting visitrs, hw the SCIF is cnstructed, hw t stre infrmatin, and general plicies that gvern SCIFs and thse that wrk in them. There will be an verview regarding SCI materials as well as classificatin management and hw t ensure infrmatin stred within the SCIF is managed crrectly. The curse will include interactive discussins and exercises t emphasize learning pints and facilitate discussins. LENGTH: Mdules 1,2,3,4 = 3 hurs each. Mdule 5 = 7 hurs. Mdules are stand-alne. If selecting Mdules 1-4, please select at least 2 mdules. TARGET: Federal gvernment civilians, military persnnel and gvernment cntractrs with respnsibility fr briefing newly SCI-cleared persnnel. Als may be used fr newly SCI-accessed persnnel r fr an annual refresher briefing. Attendees must have TS fr #1,2,5. Revised 2-1-11 Page 5 f 5