( DX' .{w{'?xy-4U[vK kj9KSgQ)M[eW!==+f;}G2W{+SMnmuaTW6EeEYcguyL SJ7C&@Da#6S]SY63(%' ( 588 0 obj <>stream ( Defense Information Systems Agency (DISA). YxTX_~7[@v'9v6GQzB5D\9sO;HeA_F7}r$uQ9"P's3y2p!b]W!N? As a general rule, international travel in pursuit of official CU activities should not involve export-controlled equipment, materials, software or technology (together "items") without first consulting the Office of Export Contorls (OEC). ( HVn7}L;muifNCk`P(bzsv\mg4hI3$gwCqw7oZf}},F]8^~XcMrbrs5kV7cnVXKof3G3C?3wuE)] }PD)G}MbY]Ti nSvEY+$#Mn&Dbg5hG"m1Y\:P4B .?hAZUm)^. ( ( ( ( CNSSI 4009-2015 ( 544 0 obj <> endobj ( ( ( ( 4. "$`x2fh2,#2 0B.y5\t%)0G^Tl"u R@TH%)1BP(s/4$=+:cR5{I4TNP$IQJA"((n %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz ( ( Effective immediately: ( ( ( ( Mobile devices/portable electronic devices have computing and wireless or Local Area Network (LAN) connectivity capabilities. ( H*wSp Portable Electronic Devices (PED). ( They take the form of formal directives, instructions,. ( The agency has tentatively concluded that this definition sets out the appropriate scope for the types of device Start Printed Page 87671 interfaces that should be covered by the Phase 2 Guidelines, i.e., the interfaces of portable electronic devices that are likely to be used by drivers when driving. ( ( 165 0 obj <>/Filter/FlateDecode/ID[<5C042181859AC3448D41FDBBB580BFB5>]/Index[150 27]/Info 149 0 R/Length 77/Prev 85608/Root 151 0 R/Size 177/Type/XRef/W[1 2 1]>>stream SN>+&\uZ2>Uqx D`jxtZ=Y EKje|We_Ty_=QM IzF,|(]jFBSCv-/.^5Yrw:lU]FI ( ( ( Comments about the glossary's presentation and functionality should be sent to [email protected]. ( Designated the Director, National Security Agency as the Federal Executive Agent for interagency OPSEC training. ( ( ( A. LETTEER/GS15/DC I IC4 ICC CYBERSECURITY/-/TEL(COMM): 7036933490/EML: [email protected]// ( Medium C AAL 2 Remote . This Instruction implements Air Force Policy Directive . For MCEN-N users, Pulse Secure VPN software provides secure, authenticated access to Marine Corps Non-secure Internet Protocol Router Network (NIPRNet) e-mail services, shared drives, and DoD CAC-enabled websites. Examples of such devices include, but are not limited to: pagers, laptops, cellular telephones, radios, compact disc and cassette players/recorders, portable digital assistant, audio devices, watches with input capability, and reminder recorders. USB chargers) Have DoD devices serviced by unauthorized personnel Use DoD procured and/or owned removable storage media on non-government networks and computers Move data between unclassified and classified computing devices using 1049 0 obj <>/Filter/FlateDecode/ID[<9CA7DD0FD97ECE479CEA466B1D2A6DAE>]/Index[1028 40]/Info 1027 0 R/Length 98/Prev 227061/Root 1029 0 R/Size 1068/Type/XRef/W[1 2 1]>>stream ( %PDF-1.6 % ( ( ( ( REF/M/DOC/DOD CIO/13APR2020// Use of unauthorized commercial collaboration tools or commercial e-mail on GFE is a violation of Marine Corps and DON acceptable use policy, and DoDI 5200.48 policy on handling Controlled Unclassified Information (CUI). . GENTEXT/REMARKS/1. ( At present, other capabilities, such as commercial Zoom and Zoom for Government, are not authorized options for Marine Corps personnel. ( highly portable, electronic media thus creating a potential for theft or loss. ( ( ( It outlines various types of mobile devices and wireless radio technologies and their vulnerabilities, reviews which personal mobile devices may be used in a government setting and under what conditions, and discusses methods of protecting unclassified government-provided and government-authorized mobile devices. Portable Electronic Device (PED) Information for Visitors . ( Security and Operational Guidance for Classified Portable Electronic Devices (PED), dated 25 Sept 2015 outlines use and operating guidance Requirements derived from Presidential Policy Directive40 and Office of Management and Budget (OMB) Directive 16-01 which mandated creation and distribution of TS collateral mobile devices Advantages hbbd``b`z$WXM@ `v2 D(o D m ( q)Ab``$ f 2 0 obj ( tO"n#g)]k4J}C-irFU4g&57s T"Y) H ~q+Ok"f[T T ( ( ( ( ( A .gov website belongs to an official government organization in the United States. hbbd``b`vk4 IK fk?X@QHpE nb4;7(2d#5| 0 R ( ( endstream endobj 1029 0 obj <. ( ( ( All SIPRNet connected PEDs must comply with requirements in the "Joint USD(I) and DoD CIO Memorandum, dated 25 September 2015, SUBJECT: Security and Operational Guidance for . ( ( ( ( R(T0T0 BC#CC=#3=cc\}#Cb@. Om ( True The DoD considers a PED to be any portable information system or device that __________. DoDI 8330.01, Interoperability of Information Technology (IT), Including National Security Systems. ( ( s+x1GC__=Y)J&|..gN|8srv.eEd%%E6p40tP1!=0eia e?SX Personnel who knowingly or willfully violate the requirements in this MARADMIN may be subject to a preliminary inquiry in accordance with reference (g) and an incident report in the Joint Personnel Adjudication System, per reference (h). hbbd```b``6M )D2z`q,>DY@dD(X2d,f3HV0.XL> ,@6$,c`bd`v #] Bh The DoD Cyber Exchange is sponsored by REF (C) IS DIA MEMORANDUM, POLICY CLARIFICATION FOR PORTABLE ELECTRONIC DEVICES, INTRODUCTION OF PWFD AND PERSONAL HEADPHONES. DoDI 8551.01, Ports, Protocols, and Services Management (PPSM) Use only removable media approved by your organization DIA Messages. ( ( ( ( ( ( CES HR Operational eGuide ( Place electronic devices in checked bags Use unknown computers for charging DoD devices (e.g. ( PEDs may also be prohibited by the meeting host in spaces not approved to process classified information where sensitive, unclassified information is being discussed. ( For NIST publications, an email is usually found within the document. ( ( The device will be remotely wiped of all data and locked to prevent access by anyone other than IT. 3/4As long as a device is correctly marked it can be connected to a DoD computer. ( hb```, ea8 All personnel are responsible for the protection of controlled unclassified information (CUI), including Privacy Act or For Official Use Only data, and classified information. ( ( ( ( ( REF/B/DOC/DEPSECDEF/22MAY2018// POC/R. listening devices, transmission devices, and cameras into classified work spaces. All data transfers on the SIPRNet require prior written approval and authorization. Government approved smartphones require encryption, password, and CAC/PIN access. MYb8r endobj lVOBo C\{ I]lL 4O9zm7]V)j3|+%a(2zl;u2z`Ygvy,`uy5Gx^-`].-&>IVG/U%*6_xYQ*0:9E/2cOouf/^71L`"W_?~8^>Y qme)klCOaD$o?c"L&OWvEExVN_o? 1.2. ( ( ( ( MSGID/GENADMIN/CMC DCI IC4 WASHINGTON DC// ( These capabilities place DoD information at risk and are not authorized in support of the conduct of internal DoD business. 3.a. As stated in reference (j), internal/embedded microphones and webcams may be enabled/used on unclassified systems; however, an enterprise policy will be enforced on these peripherals, set to auto-disable the peripheral after one hour if not acknowledged by the user. ( 4 0 obj ( ( ( 10-7, Information Operations. 3. (1) The USD ( I) and the Department of Defense Chief Information Officer (DOD CIO), may jointly grant exceptions to this policy for government-issued mobile devices pursuant to DOD Manual 5200.01 , Vol l, "DOD Information Security Program: Overview, Classification and Declassification." what forces are involved with a bow and arrow . ( ( OxWWDDU@4R+(d)8"wb >N}AeZ]+Z` EX F|{1hKhY04nE UYXKdbE(M` 8>H;cz'ne1|MGOd6=}$Z. ( A lock () or https:// means you've safely connected to the .gov website. Personally-owned electronic devices (unmanaged government devices) are prohibited in open storage rooms (secure rooms), SCIFs, SAP Facilities (SAPF), classified meetings, conferences, or. REF (D) IS ALNAV 019-16, ACCEPTABLE USE OF AUTHORIZED PERSONAL PORTABLE ELECTRONIC DEVICES IN SPECIFIC DEPARTMENT OF THE NAVY SPACES. ( ( Only government furnished equipment (GFE) approved for acquisition within the U.S government is authorized for use. ( under criteria established by an Executive Order or an act of Congress to be kept protected in the interest . ( DIA Messages. Fort Belvoir, Virginia - Portable electronic devices are prohibited in Defense Logistics Agency-owned or controlled spaces approved for storage and processing of classified information, according to a memorandum signed Sept. 25 by DLA Director Army Lt. Gen. Darrell Williams. REF/E/MEMO/DOD CIO/21APR2016// REF (L) IS DON CIO MEMORANDUM, AMPLIFYING GUIDANCE TO THE DEPARTMENT OF THE NAVY ACCEPTABLE USE POLICY REGARDING COLLABORATION TOOLS. S0$0u"x& ( ( \p>JH`7who ( 1 of 1 point True (Correct!) Comments about specific definitions should be sent to the authors of the linked Source publication. ( 3.a.5. Release authorized by BGen L. M. Mahlock, Director, Information Command, Control, Communications, and Computers (IC4) Division, Deputy Commandant for Information.//, MODIFICATION TO POLICY FOR PORTABLE ELECTRONIC DEVICES, UPDATE FOR CONTROLLED USE IN CLASSIFIED SPACES, UPDATE ON AUTHORIZED TELEWORK CAPABILITIES, Date Signed: 9/9/2020 | MARADMINS Number: 520/20, Hosted by Defense Media Activity - WEB.mil. 0=( ( ( ( ( REF/J/GENADMIN/CMC DCI IC4 WASHINGTON DC/241240Z APR 20/MARADMIN 263-20// ( ( from True Because of the security risks associated with PEDs and removable storage media, the DoD has a policy that requires DoD data stored on these devices to be encrypted. Therefore, these devices provide a means for our adversaries to hack into our network / systems 24/7 without warning. ( ( 3 0 obj The Defense Logistics Agency defines mobile devices as a wireless-enabled portable device. ( Subscribe, Contact Us | DLA Public Affairs. /cI8~.n$15}K}G_g?qH??~?g?{?^ZNG\B7p,twwbaqGE]33szn>{'#.[ qdYRA:{q'%h@B-~+o"xoyYvFw?>Ge>PYw~gvQ|d% * All message traffic has been modified from it's original format. Security Testing, Validation, and Measurement, National Cybersecurity Center of Excellence (NCCoE), National Initiative for Cybersecurity Education (NICE), NIST Internal/Interagency Reports (NISTIRs). are not considered portable electronic devices. ( Photo by Tech Sgt. ( ( The same rules and protections apply to both. *;BH0U.|%[Ik7,YGI3sM"`35*h C(&2lHliiEnLvt4@\ KDDvCyo2HLUU. %PDF-1.5 % ( If the spillage of classified information occurs, you must do which of the . . ( (IS) that is provided for USG-authorized use only. ( Categories . All data transfers on the SIPRNet require prior written approval and authorization. REF (M) IS DOD CIO MEMORANDUM, AUTHORIZED TELEWORK CAPABILITIES AND GUIDANCE. ( ( ( ( Mobile Devices (CMD), Portable Electronic Devices (PED), and laptops are DoD mobile endpoints. This includes (but is not limited to) printers, scanners, storage devices (e.g., hard drives), wireless/bluetooth keyboards or mice, or smart display devices. 0 D Government-issued PEDs are allowed in areas approved for open storage and processing of classified information if Wi-Fi and Bluetooth capabilities are disabled. Access is . ( ( ( ( ( ( ( If Portable Electronic Devices (PEDs) are connected to the SIPRNet, all devices must be NSA approved/configured and meet requirements for Data at Rest (DAR) encryption. ( Acronyms are usually formed from the initial letters of words, as in NATO (North Atlantic Treaty Organization), but sometimes use syllables, as in Benelux (short for Belgium, the Netherlands, and Luxembourg), NAPOCOR (National Power Corporation), and TRANSCO (National Transmission Corporation). ( ( . ( ( fF ZU8utw @P{`T6~MZ9CH5_{d$R4[f*o ZVwGwZ3_]Eq7W.$lLJ0LD+1(zg b8Jr)!QSr4 U|c+VxtU65tMuBb KkGt`{zV84+ _GE;3Z# x#2#RF,Ii\Bj%W.uZv?*0!iv0%AfiJ6\hqy~[q6/ WJkD.#.^c=SL%$$-p {EN??Dk%]xX,b\Bm tb .0f%h$} VpP=m'kGx[cO_['j$d]_T~#:J\+Xw\1:jS*iMf`ZFZHvZ)L ]uvefdf/\Yj}|}1o\C*I$ ~VHeza&k)9;1B, xei%)_rcYOFh5oFBQLl*!$BuskoMkel~cp 3.a.7. ( 150 0 obj <> endobj 261 0 obj <> endobj ( dod portable electronic device policy. ( ( ( An official website of the United States government, DLA policy prohibits all personnel from bringing portable electronic devices into agency-owned or controlled spaces approved for storage and processing of classified information. Applies to all DoD personnel, contractors, and visitors that enter DoD facilities or that have access to DoD information. The ECSM series provides modules that guide the implementation of policy direction as stated in MCO 5239.2A, Marine Corps Cybersecurity Program (MCCSP), "provides cybersecurity policy,. ( ( ( Wired headphone or headsets without microphones, e.g., with earpiece only, cannot contain noise-cancelling functionality. The Western Electric Company was an American electrical engineering and manufacturing company officially founded in 1869. x\SFN|S ~nQfI6M]]etklGp_=3p ===~TMy5ILb8Xfg_e1N2U~`syj\1? DoD policy states that Federal Government communication systems and equipment (including Government owned telephones, facsimile machines, electronic mail, internet systems, and commercial systems), when use of such systems and equipment is paid for by the Federal Government, will be for official use and authorized purposes only. ]OEA=#-&GZ> q4 0%G_sO>N|;9c =zN6{d$1Q "N4k2/%~0"3y;>0@CDN;b@#`_~~/|M_S It also, implements the guidance in Department of Defense Instruction (DoDI) 8560.01, Communications Security (COMSEC) monitoring and Information Assurance (IA) Readiness . 2. ( portable electronic device (PED) Abbreviation (s) and Synonym (s): PED show sources Definition (s): Electronic devices having the capability to store, record, and/or transmit text, images/video, or audio data. Notional Internet of Things (IoT) Scenarios Identified by Department of Defense (DOD) DOD has issued policies and guidance for IoT devices, including personal wearable fitness devices, portable electronic devices, smartphones, and infrastructure devices associated with industrial control systems. ( ( ( ( ( REF/A/DOC/ECSM 005/HQMC C4 CY/1JUL2016// ( ( ( ( ( ( This course has been streamlined to deliver content relevant to each learner's selected work role, whether View more. 8. 27 Sep 2006 (U//FOUO) Portable Electronic Devices (PEDS) in DIA Accredited Department of Defense (DOD) SCIFS (AKO Access Required) 5 Apr 2007 (U//FOUO) Limited . You have JavaScript disabled. Our Other Offices, An official website of the United States government. Menu ( ( ( ( <> ( ( e. Updates guidance on Internet access and use of commercial e-mail. It prohibits use of personal PEDs like cell phones, laptops, iPads, smartwatches, and fitness trackers that have storage or Wi-Fi and Bluetooth capabilities inside any space where classified information is discussed or disseminated. 1. The DoD Cyber Exchange HelpDesk does not provide individual access to users. ( ( For example new employees often receive workstations used by previous . ( ( ( It is also recognized that inappropriate use of Portable Electronic Devices in courthouses can be a . REF (N) IS DODI 1035.01, TELEWORK POLICY.// ( 3.a.8. ( In classified and unclassified government spaces, or while in use during authorized telework, webcams, microphones, and headphones/headsets must be disconnected and/or disabled when not in use. f. I will not connect any personal IT equipment (e.g. The use of cloud services must be formally authorized by the Marine Corps Authorizing Official (AO) and comply with requirements in the DoD Cloud Computing Security Requirements Guide. ( This is a potential security issue, you are being redirected to https://csrc.nist.gov. ( ( ( Exceptions Courses 339 View detail Preview site Acceptable Use Policy - United States . It is DoD policy that: a. Unclassified WLAN systems must be standards-based and IEEE 802.11 compliant in accordance with Paragraph 3.1.a. ( 0p 2Hs6b S6Ha~xVUKD`0KU"w?\;t'Lt~P'F?~w';`zM+#'B>= ( <> ( ( 3.a.4. Do not bring devices near other unknown electronic devices. ( paramount. Updates policy and responsibilities governing the DoD Operations Security (OPSEC) Program and incorporates the requirements of NSDD No. ( ( 1067 0 obj <>stream ( ( Local Area Network Technologies," July 1, 2016 ( local & delicious. g. ( endstream endobj startxref ( M$wY%\z>Rqa. ( Today Comment: All "smart" devices are capable of staying connected full-time to the internet, via satellite, Wi-Fi, cable, etc. Subj: REMOVABLE STORAGE DEVICES . False ' ( REF (E) IS DOD CIO MEMORANDUM, INTRODUCTION AND USE OF WEARABLE FITNESS DEVICES AND HEADPHONES WITHIN DOD ACCREDITED SPACES AND FACILITIES. DLA Director Army Lt. Gen. Darrell Williams recently signed a policy restricting use of PEDs in agency-owned or controlled spaces, Read the latest news from the Energy Major Subordinate Command of the Defense Logistics Agency. ( ( % A PED is defined in Army Regulation (AR) 25-2 as portable Information Systems (IS) or devices with the capability of wireless or LAN . ( DoDI 8410.01, Internet Domain Name and Internet Protocol Address Space Use and Approval. Source(s): A portable electronic device (PED) is defined in REF A as any non- stationary electronic apparatus with singular or multiple capabilities of recording, storing, and/or transmitting data, voice, video, or photo images (e.g., cell phones, laptops, tablets, and wearable devices such as fitness bands and smart watches). ( ( ( Z,9 ( ( To mitigate potential risks, the following conditions and procedures will be implemented when using the aforementioned peripherals: REF/I/GENADMIN/CMC C FOUR CP WASHINGTON DC/222020Z OCT 15/MCENMSG 009-115// ( DoD authenticators include DoD CIO approved authentication devices, which can . 3.b.2. ( ( ( ( hbbd`b`bLuL %d TELEWORK AND COLLABORATIVE TOOLS/CAPABILITIES: hb```V|af`0pd0 rp$u0y1A)(|(b1Dc b}ua}kGGGGCkCk@HHQAA! f. Updates guidance on sanitization, declassification, and release of IS . ( ( ( This MARADMIN will remain in effect until cancelled or superseded. Student Self-Paced 2. ( ( ( SUBJ/MODIFICATION TO POLICY FOR PORTABLE ELECTRONIC DEVICES (PEDS), UPDATE FOR CONTROLLED USE IN CLASSIFIED SPACES, UPDATE ON AUTHORIZED TELEWORK CAPABILITIES// ( Use of an Intrinsically Safe Electronic Device, including any Portable Electronic Product (PEP), which complies with . ( ( ( stream Do not use NFC to communicate passwords or sensitive data. Portable electronic devices are prohibited in Defense Logistics Agency-owned or controlled spaces approved for storage and processing of classified information, according to a memorandum signed Sept. 25 by DLA Director Army Lt. Gen. Darrell Williams. DOD Acceptable Use Policy . %%EOF Using portable devices can increase the risk of data loss (when a physical device is lost), data exposure (when sensitive data is exposed to the public or a third party without consent), and increased exposure to network-based attacks to and from any system the device is connected to (both directly and via networks over the internet). ( D!q%. iH~\6; y7tJo$3,H.84,o2f&v3*3>S "'M1|'&L0,.\ P*iDE3 IRq_i6Xd6|7 Electronic devices having the capability to store, record, and/or transmit text, images/video, or audio data. ( These include: Microsoft Office 365 (O365) IL5 Microsoft Teams, Defense Collaboration Services-Unclassified (DCS-U), and CISCO WEBEX Room Systems environment as a temporary capability. ( ( ( ( ( ( Napster, Kazaa), games or devices on a U.S. Government system. ( 267 0 obj <>stream ( ( ( 1 0 obj<> endobj 2 0 obj<>/Font<>/ProcSet[/PDF/Text]/ExtGState<>>> endobj 3 0 obj<>stream @E}+d3;lI! "h(;pF`F~*xu4~d!Kfig+VznCoYTJ,;N_ 4 ( ( It is implemented with DoD specific security controls and provides video, voice, and text communication, as well as document sharing tools for Basic Controlled Unclassified Information (CUI). ( ( ( Christina M. Styer, The Nation's Combat Logistics Support Agency, Hosted by Defense Media Activity - WEB.mil. ( ( Personally-owned devices must be approved in accordance with Component guidance and local procedures prior to introduction into DoD spaces, and personally-owned external peripherals other than wired headsets are not permitted %PDF-1.6 % ( Official websites use .gov endobj % %PDF-1.7 endobj ( < ( Last Revised. endobj stream ( R 091720Z SEP 20 ( %%EOF ( 0 Electronic devices and media are often reused in the normal course of business. ( ( Portable Electronic Devices (PEDs) Back in the old days all we had was an obscure statement in each regulation (91, 121, 125, and 135) that said hearing aids, pacemakers, portable voice recorders, and shavers were okay, anything else had to be approved by the operator. ( ( ( Per reference (k), DoD Components must first attempt to leverage DoD enterprise collaboration capabilities, which are approved for use by all DoD users. ( REF/F/DOC/DODM 5200.01, VOLUME 3/24FEB2016//