Operational Controls and Classified Information Systems
Operational Controls and Classified Information Systems By: Jeffrey W. Bennett, SFPC, SAPPC, ISOC, ISP This article addresses the protection of Information Systems and the information that resides on them and is modeled after questions from the Self Inspection Handbook for NISP Contractors . We feel this is a great format to walk through the self-inspection criteria. We begin with the topic question, the NISPOM reference, an explanation of requirements, and finally how to inspect compliance. Topic Question(s): How is the IS physically protected? (Check all that apply) NISPOM Reference(s): 8-302b Operational Controls Discussion: Each of the countermeasures above are already covered in sections of NISPOM chapter 5. Neither NISPOM nor the Self-Inspection Handbook desire to define these countermeasures. The intent is to determine which countermeasures are applied to demonstrate their application. These countermeasures should reflect the three controls identified in NISPOM f...