13.07.2015 Views

Information Systems Security Manager (ISSM) - Marine Corps ...

Information Systems Security Manager (ISSM) - Marine Corps ...

Information Systems Security Manager (ISSM) - Marine Corps ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

NAVSO P-5239-04SEPTEMBER 19953.8 Incident and Violations Reporting<strong>Security</strong> incidents or violations are occurrences that may affect the security posture ofthe IS. <strong>Security</strong> incidents or violations include the following:· Suspected or confirmed viral infection· Intrusion attempts and successes within the IS, such as:- Remote users logging in with compromised passwords- Compromised administrative privileges, allowing the creation of and use of falseuser accounts.· Access denials, such as:- Incorrect password violations- Incorrect account/user names- Unauthorized access to certain files, directories, servers, or other resources on theIS.ResponsibilityAll suspected incidents or violations must be reportedimmediately, first by the ISSO to the <strong>ISSM</strong>, and then afteranalysis by the <strong>ISSM</strong>, to the NAVCIRT and the DAA. The<strong>ISSM</strong> is responsible for approving the incident reportingmechanism.ImplementationIncident ReportingMechanismThe <strong>ISSM</strong> ensures that the mechanism facilitates the reportingof:· All access denials, repeated failed logon attempts, andother unusual activities· Viruses or suspected viruses and the forwarding of allvirus reports to NAVCIRT· All intrusion attempts/successes.The <strong>ISSM</strong> ensures that the incident reporting mechanism meetsCommand and INFOSEC requirements. The mechanismshould include the following, at a minimum:· Warning message and warning report monitoring· Access denial proceedings· <strong>Security</strong> problem analysis· Investigation of actual or suspected compromise of34

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!