Activity-in-Diagram: Phase 1: Understand Cyber Security Requirements

CreatorTim Ramey

Description

The purpose of the Phase 1 is to examine the system's cybersecurity, system cyber survivability, and operational resilience requirements for developing initial and subsequent approaches and Plans for conducting contractor and government cybersecurity T&E.

Owning Diagram A0: Assess Cybersecurity Risk

Decomposition

A1: Phase 1: Understand Cyber Security Requirements

Input

RMF security plan

Test and Evaulation Master Plan (TEMP)

Mission-Based Cyber Risk Assessment (MBCRA)

Output

CT&E RFP

Cyber Survivability Risk Category (CSRC) assignment

OT data requirements

cybersecurity T&E strategy

catalog of cybersecurity requirements

plan for MBCRA

system threat assessment

TEMP updates

MBCRA updates

Control

DODIs (various)

JCIDS IDC/CDD/CPD

Cheif Developmental Tester

need for additional requirement

Mechanism

Cybersecurity OTA Technical Experts

Lead DT&E Organization

Cybersecurity DT&E Technical Experts

Operational Test Agency

Attachments

phase 1.png