ICD 503 for Practitioners

  • Length: Three Days
  • Cost: $1500
  • U.S. Citizenship Required

Course Director: Andrew Erne & Greg Burch

Course Description

This course provides Information Assurance and Information System Security Managers, Information Systems Security Engineers, and Information Systems Security Officers with knowledge to accomplish or oversee the implementation of Intelligence Community Directive (ICD) 503, Intelligence Community Information Technology Systems Security Risk Management, Certification and Accreditation. Students gain insights into the Federal Government’s Certification & Accreditation Transformation by examining the precepts of commonality, reuse and, risk-management from an enterprise perspective. Students learn the Risk Management Framework (RMF) and gain an understanding of the key RMF roles and responsibilities. Instruction also includes categorizing information and information systems; security control families; common, hybrid, and system-specific security controls; tailoring and the identification of control enhancements; considerations for implementing security controls in the System Development Life-Cycle (SDLC); resources and references to assess and test security controls; the Body of Evidence to achieve authorization (accreditation); and considerations for continuous monitoring. The course provides a detailed walk-through of National Institute of Standards and Technology (NIST) Special Publication (SP) 800-37 and NIST SP 800-53; and the Committee for National Security Systems (CNSS) Instruction 1253. Because most security professionals still encounter Director of Central Intelligence (DCID) 6/3 in the workplace as organizations gradually transition to ICD 503, this course provides a high-level overview of the DCID and highlights the most distinct differences between it and ICD 503.

Target Audience

Personnel involved in IT security who are responsible for system certification and accreditation.

Why Take the Course

  1. Gain a basic understanding of the new national policy relative to systems certification and accreditation.
  2. Understand the new concept and approach to using newly established policy and existing from across various components of the US government.

ICD 503 Systems Security Practitioners Course (SSPC)

April 23 - 26, 2012Chantilly, VA
July 16 - 19, 2012Chantilly, VA
October 29 - November 1, 2012Chantilly, VA

NSTI On The Fly - Let Us Bring A Course To You!

  • Save Your Company Money
  • Save Your Employees Time

NSTI ~ 14325 Willard Rd #102, Chantilly, VA ~ Phone: 703-263-9113 ~ Fax: 703-263-7297