( f. Updates guidance on sanitization, declassification, and release of IS . ( ( ( Use of unauthorized commercial collaboration tools or commercial e-mail on GFE is a violation of Marine Corps and DON acceptable use policy, and DoDI 5200.48 policy on handling Controlled Unclassified Information (CUI). ( ( Mobile devices/portable electronic devices have computing and wireless or Local Area Network (LAN) connectivity capabilities. Comments about specific definitions should be sent to the authors of the linked Source publication. ( ( ( ( REF/I/GENADMIN/CMC C FOUR CP WASHINGTON DC/222020Z OCT 15/MCENMSG 009-115// ( True Because of the security risks associated with PEDs and removable storage media, the DoD has a policy that requires DoD data stored on these devices to be encrypted. ( v>w7w/6Mp+>i[hpIt,~P5sZwF=c]fS! DQ Gnga|,O. True The DoD considers a PED to be any portable information system or device that __________. Subj: REMOVABLE STORAGE DEVICES . ( REF/C/MEMO/DIA WASHINGTON DC/1MAY2014// 3.a.8. portable electronic devices (PEDs) and mobile computing devices, such as laptops, fitness bands, tablets, smartphones, electronic readers, and Bluetooth devices, have similar features. Use of Personal Electronic Devices, either intrinsically safe or non-intrinsically safe, is limited to prevent safety hazards in areas that are restricted, have . 5. 3.a.5. Fort Belvoir, Virginia - Portable electronic devices are prohibited in Defense Logistics Agency-owned or controlled spaces approved for storage and processing of classified information, according to a memorandum signed Sept. 25 by DLA Director Army Lt. Gen. Darrell Williams. endstream endobj startxref ( A lock () or https:// means you've safely connected to the .gov website. ( Telework personnel, when connecting Marine Corps systems to non-government internet services/internet service providers, are required to initiate a virtual private network (VPN) connection to their authorized network. All data transfers on the SIPRNet require prior written approval and authorization. All data transfers on the SIPRNet require prior written approval and authorization. This may be due to a failure to meet the access policy requirements. CNSSI 4009-2015 ( ( ( 3 for additional details. ( ( \p>JH`7who ( See NISTIR 7298 Rev. ( @O{M(X,.wt>D-+ 7; 3 0 obj ( H, ( ( ( ( ( If Portable Electronic Devices (PEDs) are connected to the SIPRNet, all devices must be NSA approved/configured and meet requirements for Data at Rest (DAR) encryption. ( Our Other Offices, An official website of the United States government. So in Part 91 operations the PIC, with or without any technical expertise . ( ( <> Portable electronic devices can pose a security threat by allowing sensitive or classified information to be compromised. ( As stated in reference (m), DoD is aware that several DoD components have expressed pursuing unauthorized cloud and collaboration capabilities. Authorized webcam user agreements must be completed and filed with the designated Information System Security Manager/Officer (ISSM/ISSO) for webcams used on unclassified systems within collateral classified spaces. Personnel who knowingly or willfully violate the requirements in this MARADMIN may be subject to a preliminary inquiry in accordance with reference (g) and an incident report in the Joint Personnel Adjudication System, per reference (h). Place electronic devices in checked bags Use unknown computers for charging DoD devices (e.g. This site requires JavaScript to be enabled for complete site functionality. ( ( An acronym is a word or name consisting of parts of the full name's words. ( peer software (e.g. 3. ( 3. ( ( H*53043V0 B]sK#=c3 0S@DO5Pp H*wSp tO"n#g)]k4J}C-irFU4g&57s T"Y) H ~q+Ok"f[T T You can find the latest information on using PPEDs in DON spaces in ALNAV 019/16 "Acceptable Use of Authorized Personal Electronic Devices in Specific Department of the Navy . Source(s): This fast paced integration has caused a paradigm shift to occur within DOD and DLA. ( DOD Acceptable Use Policy . ( ( ( ( National Centers of Academic Excellence in Cybersecurity (NCAE-C), Public Key Infrastructure/Enabling (PKI/PKE), Using Mobile Devices in a DoD Environment. 3.a.2. It also, implements the guidance in Department of Defense Instruction (DoDI) 8560.01, Communications Security (COMSEC) monitoring and Information Assurance (IA) Readiness . ( ( f. I will not connect any personal IT equipment (e.g. 1 0 obj ( 2 Ch) I MEFO 5101.1 It outlines various types of mobile devices and wireless radio technologies and their vulnerabilities, reviews which personal mobile devices may be used in a government setting and under what conditions, and discusses methods of protecting unclassified government-provided and government-authorized mobile devices. ( ( endobj ( DoDI 8410.01, Internet Domain Name and Internet Protocol Address Space Use and Approval. DOD issuances contain the various policies and procedures the govern and regulate activities and missions across the defense enterprise. ( ( Per direction of the DON CIO contained in references (k) and (l), Microsoft O365 IL5 Teams, Defense Collaboration Service (DCS), Global Video Services (GVS), Secure Access File Exchange (SAFE), and Intelink are the only approved DoD collaboration tools. ( /cI8~.n$15}K}G_g?qH??~?g?{?^ZNG\B7p,twwbaqGE]33szn>{'#.[ qdYRA:{q'%h@B-~+o"xoyYvFw?>Ge>PYw~gvQ|d% These include: Microsoft Office 365 (O365) IL5 Microsoft Teams, Defense Collaboration Services-Unclassified (DCS-U), and CISCO WEBEX Room Systems environment as a temporary capability. %PDF-1.6 % Exceptions Courses 339 View detail Preview site Acceptable Use Policy - United States . listening devices, transmission devices, and cameras into classified work spaces. Share sensitive information only on official, secure websites. OxWWDDU@4R+(d)8"wb >N}AeZ]+Z` EX F|{1hKhY04nE UYXKdbE(M` 8>H;cz'ne1|MGOd6=}$Z. Only government furnished equipment (GFE) approved for acquisition within the U.S government is authorized for use. This STIG provides policy, training, and operating procedure security controls for the use of mobile devices and systems in the DoD environment. ( Designated the Director, National Security Agency as the Federal Executive Agent for interagency OPSEC training. ( ( $4%&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz " ? ( ( The use of cloud services must be formally authorized by the Marine Corps Authorizing Official (AO) and comply with requirements in the DoD Cloud Computing Security Requirements Guide. However, as noted in reference (j), the use of personally-owned, wired (e.g., USB or 35 millimeter audio) peripherals such as webcams, headphones/microphones, keyboards, or mice is permitted when executing telework or other authorized work away from government workspaces or facilities. ( ( ( View Portable Electronic Devices and Removable Storage Media v2.0 HTML.docx from IS MISC at American Military University. ( ( NARR/REF (A) IS MARINE CORPS ENTERPRISE SECURITY MANUAL (ECSM) 005, PORTABLE ELECTRONIC DEVICES AND WIRELESS LOCAL AREA NETWORK TECHNOLOGIES. The policy applies to civilian and military employees as well as contractors and visitors to DLA. ( 30, 1993 (b) CJCSI 6211.02D, "Defense Information Systems Network (DISN) Responsibilities," January 24, 2012 (c) MCO 5239.2B (d) USMC ECSM 005, "Portable Electronic Devices and Wireless . hbbd```b``6M )D2z`q,>DY@dD(X2d,f3HV0.XL> ,@6$,c`bd`v #] Bh ( 3 0 obj 0 3.b. ( ( ( ( Today Comment: All "smart" devices are capable of staying connected full-time to the internet, via satellite, Wi-Fi, cable, etc. An official website of the United States government, DLA policy prohibits all personnel from bringing portable electronic devices into agency-owned or controlled spaces approved for storage and processing of classified information. ( MARADMIN 520/20 ( Per reference (k), DoD Components must first attempt to leverage DoD enterprise collaboration capabilities, which are approved for use by all DoD users. ( ( ( ( 4 0 obj This interactive training explains security issues associated with unclassified government-provided and government-authorized mobile devices, as well as personal mobile devices used in a government setting. HVn7}L;muifNCk`P(bzsv\mg4hI3$gwCqw7oZf}},F]8^~XcMrbrs5kV7cnVXKof3G3C?3wuE)] }PD)G}MbY]Ti nSvEY+$#Mn&Dbg5hG"m1Y\:P4B .?hAZUm)^. HWr8}W `/c)MeWx` ( ( The DoD Cyber Exchange HelpDesk does not provide individual access to users. Last Revised. This course has been streamlined to deliver content relevant to each learner's selected work role, whether View more. ( For MCEN-N users, Pulse Secure VPN software provides secure, authenticated access to Marine Corps Non-secure Internet Protocol Router Network (NIPRNet) e-mail services, shared drives, and DoD CAC-enabled websites. ( Secure .gov websites use HTTPS All personnel are responsible for the protection of controlled unclassified information (CUI), including Privacy Act or For Official Use Only data, and classified information. . 3.a.4. REF (C) IS DIA MEMORANDUM, POLICY CLARIFICATION FOR PORTABLE ELECTRONIC DEVICES, INTRODUCTION OF PWFD AND PERSONAL HEADPHONES. ( This STIG applies to any mobile operating system device used to store, process, transmit, or receive DoD information. ( ( Portable Electronic Devices (PED). The ECSM series provides modules that guide the implementation of policy direction as stated in MCO 5239.2A, Marine Corps Cybersecurity Program (MCCSP), "provides cybersecurity policy,. ( Federal and DoD regulations that support this standard DoD 8510.1-M ( ( REF/M/DOC/DOD CIO/13APR2020// 3.a. hb```V|af`0pd0 rp$u0y1A)(|(b1Dc b}ua}kGGGGCkCk@HHQAA! ( from Personnel bringing wearable fitness devices and headphones into DoD accredited spaces are consenting to inspection and monitoring of the devices. ( ( ( ( 10.8.26 Wireless and Mobile Device Security Policy Program Scope and Objectives 10.8 .26.1.1 . Portable Electronic Devices (PEDs) Back in the old days all we had was an obscure statement in each regulation (91, 121, 125, and 135) that said hearing aids, pacemakers, portable voice recorders, and shavers were okay, anything else had to be approved by the operator. ( dod portable electronic device policy. ( stream market impediment definition. ( ( ( ( ( ( ( (PFrsoj Z( ( REF (G) IS SECNAV M-5510.30, DON PERSONNEL SECURITY PROGRAM. }0CLs S~D5niELz|P]y^Q3WA? NZDI6(R8+mZgd|JZwZJEZ]6=&MBz. . Wired headsets, e.g., a headphone with an integrated microphone, can contain a built-in noise cancelling microphone; however, no other noise-cancelling functionality is permitted. Security Testing, Validation, and Measurement, National Cybersecurity Center of Excellence (NCCoE), National Initiative for Cybersecurity Education (NICE), NIST Internal/Interagency Reports (NISTIRs). ( ( ( ( ( ( REF/L/MEMO/DONCIO/01APR2020// C\{ I]lL 4O9zm7]V)j3|+%a(2zl;u2z`Ygvy,`uy5Gx^-`].-&>IVG/U%*6_xYQ*0:9E/2cOouf/^71L`"W_?~8^>Y qme)klCOaD$o?c"L&OWvEExVN_o? \ag6qLDzN(qNha*|B}@32imz>|)f. ( ( Ref: (a) DoD 5500.07-R Ch 7, "Joint Ethics Regulation (JER)," August . ( S0$0u"x& Applies to all DoD personnel, contractors, and visitors that enter DoD facilities or that have access to DoD information. ( 3. ( 0=( ( ( ( REF (N) IS DODI 1035.01, TELEWORK POLICY.// 0 False J( ( ( DLA Director Army Lt. Gen. Darrell Williams recently signed a policy restricting use of PEDs in agency-owned or controlled spaces, Read the latest news from the Energy Major Subordinate Command of the Defense Logistics Agency. Prior to connecting or enabling peripherals such as webcams, headphones/headsets, or microphones, classified spaces will be sanitized, i.e., all classified materials and systems will be secured, powered off, etc., to prevent inadvertent transmission of classified information. ( ( hb```"!:AXc ~t;vOgLi7Q +:;+:X]@V \`V-fj#Y%8Ctp;O/fw "% ( ( are not considered portable electronic devices. 3.b.2. 0p 2Hs6b S6Ha~xVUKD`0KU"w?\;t'Lt~P'F?~w';`zM+#'B>= 261 0 obj <> endobj SUBJECT: Sensitive Compartmented Information Facility (SCIF) Use Policy. ( %tj^dR +\=8{.KT0~w]o e&rpz/geaV=g. } !1AQa"q2#BR$3br 10-7, Information Operations. A portable electronic device (PED) is defined in REF A as any non- stationary electronic apparatus with singular or multiple capabilities of recording, storing, and/or transmitting data, voice, video, or photo images (e.g., cell phones, laptops, tablets, and wearable devices such as fitness bands and smart watches).

