STIGQter STIGQter: STIG Summary: Traditional Security Checklist Version: 1 Release: 3 Benchmark Date: 15 Jun 2020:

Vault/Secure Room Storage Standards - IDS Performance Verification

DISA Rule

SV-41547r3_rule

Vulnerability Number

V-31279

Group Title

Vault/Secure Room Standards - IDS Verification

Rule Version

IS-02.02.02

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Conduct verification of IDS functionality where IDS is used as a supplemental control for vaults or secure rooms/areas containing SIPRNet assets.

Following are the required fixes:

Fix #1. Ensure that checks of ALL individual alarm sensors (BMS, motion, glass break, etc.) are conducted at least semi-annually.

Fix #2. Ensure that valid tests IAW best practices using government or industry standards and tools are used to conduct the checks.

Fix #3. Ensure that written procedures are developed for tests of each sensor type in use at a site.

Fix #4. Ensure that results of testing are maintained on file for at least 1-year.

Check Contents

This check is concerned with verification of IDS functionality where IDS is used as a supplemental control for vaults or secure rooms/areas containing SIPRNet assets.

Following are the required checks:

Check #1. Checks of ALL individual alarm sensors (BMS, motion, glass break, etc.) will be conducted at least semi-annually.

Check #2. Valid tests IAW best practices using government or industry standards and tools will be used to conduct the checks.

Check #3. Written procedures will be developed for tests of each sensor type in use at a site.

Check #4. Results of testing will be maintained on file for at least 1-year.

TACTICAL ENVIRONMENT: This check is applicable where Vaults/Secure Rooms are used to protect classified materials or systems in a tactical environment. The only exception will be for urgent (short term) tactical operations or other contingency situations where fixed facilities and equipment are not yet present or incapable of being used.

Vulnerability Number

V-31279

Documentable

False

Rule Version

IS-02.02.02

Severity Override Guidance

This check is concerned with verification of IDS functionality where IDS is used as a supplemental control for vaults or secure rooms/areas containing SIPRNet assets.

Following are the required checks:

Check #1. Checks of ALL individual alarm sensors (BMS, motion, glass break, etc.) will be conducted at least semi-annually.

Check #2. Valid tests IAW best practices using government or industry standards and tools will be used to conduct the checks.

Check #3. Written procedures will be developed for tests of each sensor type in use at a site.

Check #4. Results of testing will be maintained on file for at least 1-year.

TACTICAL ENVIRONMENT: This check is applicable where Vaults/Secure Rooms are used to protect classified materials or systems in a tactical environment. The only exception will be for urgent (short term) tactical operations or other contingency situations where fixed facilities and equipment are not yet present or incapable of being used.

Check Content Reference

M

Target Key

2506

Comments