REF/L/MEMO/DONCIO/01APR2020//
SCOPE AND APPLICABILITY.
That information may be on paper, optical, electronic or magnetic media.
It outlines various types of mobile devices and wireless radio technologies and their vulnerabilities, reviews which personal mobile devices may be used in a government setting and under what conditions, and discusses methods of protecting unclassified government-provided and government-authorized mobile devices. A mobile device security policy should define which types of the organization's resources may be accessed via mobile devices, which types of mobile devices are permitted to access the organization's resources, the degree of access that various classes of mobile devices may have
Portable Electronic Devices (PED).
Electronic devices having the capability to store, record, and/or transmit text, images/video, or audio data.
REF (K) IS DON CIO MEMORANDUM, ACCEPTABLE USE OF DEPARTMENT OF THE NAVY INFORMATION TECHNOLOGY.
REF (N) IS DODI 1035.01, TELEWORK POLICY.
Christina M. Styer, The Nation's Combat Logistics Support Agency, Hosted by Defense Media Activity -
As a general rule, international travel in pursuit of official CU activities should not involve export-controlled equipment, materials, software or technology (together "items") without first consulting the Office of Export Contorls (OEC).
3.a.1.
10.8.26 Wireless and Mobile Device Security Policy Program Scope and Objectives 10.8 .26.1.1 .
DMUC was created in 2013 by the Defense Information Systems Agency when the DOD needed a way to securely connect users' commercial mobile devices to the agency's email platform.
Visual indicators will be used to indicate that an unclassified video/voice teleconference is in session within classified spaces, such as sign(s) posted on outer doors. Today Comment: All "smart" devices are capable of staying connected full-time to the internet, via satellite, Wi-Fi, cable, etc. Today's portable electronic activity monitoring devices, (e.g., fitness, communication, and medical) offer a wide range of personal, professional, and health benefits.
REF/N/DOC/DODI 1035.01/04APR2012//
ISA 12.12.03, is permissible when consistent with this policy.
This includes, but is not limited to: commercial wireless networks and Portable Electronic Devices (PED) such as laptop computers with wireless capability, cellular/Personal . Use of Personal Electronic Devices, either intrinsically safe or non-intrinsically safe, is limited to prevent safety hazards in areas that are restricted, have .
Defense Information Systems Agency (DISA).
2. It outlines various types of mobile devices and wireless radio technologies and their vulnerabilities, reviews which personal mobile devices may be used in a government setting and under what conditions, and discusses methods of protecting unclassified government-provided and government-authorized mobile devices.
Removable media is personal, removable, and portable which introduces risk into the organization whenever it is used to store sensitive information.
Using portable devices can increase the risk of data loss (when a physical device is lost), data exposure (when sensitive data is exposed to the public or a third party without consent), and increased exposure to network-based attacks to and from any system the device is connected to (both directly and via networks over the internet).
All data transfers on the SIPRNet require prior written approval and authorization. This fast paced integration has caused a paradigm shift to occur within DOD and DLA. A new mobile device strategy for the United States Defense Department addresses the need to secure the use of mobile devices for the military but provides few specifics on how to furnish security, at least not in the non-classified version the DoD made public this month.
All data transfers on the SIPRNet require prior written approval and authorization.
REF/D/GENADMIN/SECNAV WASHINGTON DC/2281830Z MAR 16/ALNAV 019-16//
At present, other capabilities, such as commercial Zoom and Zoom for Government, are not authorized options for Marine Corps personnel.
REF/M/DOC/DOD CIO/13APR2020//
The same rules and protections apply to both.
REF (M) IS DOD CIO MEMORANDUM, AUTHORIZED TELEWORK CAPABILITIES AND GUIDANCE. REF/C/MEMO/DIA WASHINGTON DC/1MAY2014//
Prior to use of webcams, microphones, or headphones/headsets on unclassified systems within collateral classified spaces, a designated security representative (e.g., ISSO) will perform a walkthrough to validate that prescribed mitigations are in place.
3.b.1.
Fort Belvoir, Virginia - Portable electronic devices are prohibited in Defense Logistics Agency-owned or controlled spaces approved for storage and processing of classified information, according to a memorandum signed Sept. 25 by DLA Director Army Lt. Gen. Darrell Williams. 3.b.4.
Wired headsets, e.g., a headphone with an integrated microphone, can contain a built-in noise cancelling microphone; however, no other noise-cancelling functionality is permitted. This MARADMIN will remain in effect until cancelled or superseded.
3.b.7.
November 22, 2019.
National Centers of Academic Excellence in Cybersecurity (NCAE-C), Public Key Infrastructure/Enabling (PKI/PKE), Using Mobile Devices in a DoD Environment.
This may be due to a failure to meet the access policy requirements. Removable media takes many forms today (jump drives, flash memory storage, portable storage devices, etc.).
REF (D) IS ALNAV 019-16, ACCEPTABLE USE OF AUTHORIZED PERSONAL PORTABLE ELECTRONIC DEVICES IN SPECIFIC DEPARTMENT OF THE NAVY SPACES.
NARR/REF (A) IS MARINE CORPS ENTERPRISE SECURITY MANUAL (ECSM) 005, PORTABLE ELECTRONIC DEVICES AND WIRELESS LOCAL AREA NETWORK TECHNOLOGIES.
Applies to all DoD personnel, contractors, and visitors that enter DoD facilities or that have access to DoD information. Components should not initiate communications using unapproved commercial collaboration capabilities, but may participate in sessions if initiated by outside partners for public, unclassified purposes. Personnel bringing wearable fitness devices and headphones into DoD accredited spaces are consenting to inspection and monitoring of the devices. Portable electronic devices are prohibited in Defense Logistics Agency-owned or controlled spaces approved for storage and processing of classified information, according to a memorandum signed Sept. 25 by DLA Director Army Lt. Gen. Darrell Williams.
To mitigate potential risks, the following conditions and procedures will be implemented when using the aforementioned peripherals: POLICY.
An official website of the United States government, DLA policy prohibits all personnel from bringing portable electronic devices into agency-owned or controlled spaces approved for storage and processing of classified information. Prior to connecting or enabling peripherals such as webcams, headphones/headsets, or microphones, classified spaces will be sanitized, i.e., all classified materials and systems will be secured, powered off, etc., to prevent inadvertent transmission of classified information. DoD PKI Policy Identifier (OID) Credential Strength (Per DoDI 8520.03) AAL (NIST 800-63-3) Issuance Approved Uses Medium Mobile PKI Credentials .
For example new employees often receive workstations used by previous . REF (B) IS DEPSECDEF MEMORANDUM, MOBILE DEVICE RESTRICTIONS IN THE PENTAGON.
3.a.8. 5. DOD Acceptable Use Policy .
REF (G) IS SECNAV M-5510.30, DON PERSONNEL SECURITY PROGRAM. These include but are not limited to iPhones, iPads and tablets. It is DoD policy that: a. Unclassified WLAN systems must be standards-based and IEEE 802.11 compliant in accordance with Paragraph 3.1.a. Personnel who knowingly or willfully violate the requirements in this MARADMIN may be subject to a preliminary inquiry in accordance with reference (g) and an incident report in the Joint Personnel Adjudication System, per reference (h).
REF (E) IS DOD CIO MEMORANDUM, INTRODUCTION AND USE OF WEARABLE FITNESS DEVICES AND HEADPHONES WITHIN DOD ACCREDITED SPACES AND FACILITIES.
Security Testing, Validation, and Measurement, National Cybersecurity Center of Excellence (NCCoE), National Initiative for Cybersecurity Education (NICE), NIST Internal/Interagency Reports (NISTIRs).
DOD issuances contain the various policies and procedures the govern and regulate activities and missions across the defense enterprise. MSGID/GENADMIN/CMC DCI IC4 WASHINGTON DC//
As stated in reference (m), DoD is aware that several DoD components have expressed pursuing unauthorized cloud and collaboration capabilities. Portable electronic devices are prohibited for use while operating a vehicle unless a hands-free device, such as a speaker or Bluetooth, is used.
under criteria established by an Executive Order or an act of Congress to be kept protected in the interest . 3.
Wireless devices, services, and technologies that are integrated or connected to DoD networks are considered part of those networks, and must comply with DoD Directive 8500.01E (reference (d)) and DoD Instruction 8500.02 (reference (e)) and be certified and accredited in accordance with DoD Instruction 5200.40 (reference (f)). SUBJ/MODIFICATION TO POLICY FOR PORTABLE ELECTRONIC DEVICES (PEDS), UPDATE FOR CONTROLLED USE IN CLASSIFIED SPACES, UPDATE ON AUTHORIZED TELEWORK CAPABILITIES//
It also, implements the guidance in Department of Defense Instruction (DoDI) 8560.01, Communications Security (COMSEC) monitoring and Information Assurance (IA) Readiness .
This is a potential security issue, you are being redirected to
Electronic devices having the capability to store, record, and/or transmit text, images/video, or audio data. If the spillage of classified information occurs, you must do which of the .
Mobile Devices (CMD), Portable Electronic Devices (PED), and laptops are DoD mobile endpoints. (U) Implementation Guidance for Department of Defense (DOD) (Less NRO and NSA) SCIFS.
Department of Defense Directive 8100.02 (Use of Commercial Wireless Devices, Services, and Technologies in Department of Defense (DOD) Global Information Grid (GIG)); April 14, 2004; Certified Current as of April 23, 2007. b.
Medium C AAL 2 Remote . For MCEN-N users, Pulse Secure VPN software provides secure, authenticated access to Marine Corps Non-secure Internet Protocol Router Network (NIPRNet) e-mail services, shared drives, and DoD CAC-enabled websites.
DoD-provided peripherals, including CAC readers used on non-DoD-issued computers, may be returned and reused. 