13.07.2015 Views

Information Systems Security Manager (ISSM) - Marine Corps ...

Information Systems Security Manager (ISSM) - Marine Corps ...

Information Systems Security Manager (ISSM) - Marine Corps ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

NAVSO P-5239-04SEPTEMBER 19953.0 INFORMATION SYSTEMS SECURITY MANAGERRESPONSIBILITIESThe <strong>ISSM</strong> is responsible for ensuring that the INFOSEC Program requirements aremet. The <strong>ISSM</strong> accomplishes this by performing, directing, coordinating, administering, andoverseeing various activities and personnel. This section defines the responsibilities of the<strong>ISSM</strong> in 11 task areas.3.1 <strong>Security</strong> ManagementThis section describes the responsibilities of the <strong>ISSM</strong> within the overall task area ofsecurity management, which is the umbrella covering the other 10 task areas. It specificallyfocuses on planning and coordinating tasks required for an effective INFOSEC program.SECURITY POLICY AND PROCEDURES DEVELOPMENT ANDAPPLICATIONResponsibilityThe <strong>ISSM</strong> is responsible for interpreting and tailoring DOD andDON security policy to meet the requirements of the Commandor activity and ISs and networks under the <strong>ISSM</strong>’s cognizance.ImplementationPolicy and ProceduresApplicationThe <strong>ISSM</strong> remains current with all DOD and DON INFOSECpolicies and procedures and is aware of changes to thesepolicies and procedures. The <strong>ISSM</strong> ensures that all INFOSECactivity within the respective Command is in accordance withDOD and DON policy and procedures. The <strong>ISSM</strong> tailors thispolicy and guidance to meet the specific Command’srequirements.Key DocumentDevelopmentThe <strong>ISSM</strong> ensures that activity-level INFOSEC policy andguidelines are documented in an Activity ISSP in accordancewith OPNAVINST 5239.1A.The <strong>ISSM</strong> also ensures the development of SSPs for each ISthat contains or processes sensitive information in accordancewith OMB Bulletin No. 90-08.8

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!