Home » Services » Information Assurance » Certification and Accreditation
Certification and Accreditation
The information and supporting evidence needed for the security accreditation of an information system are developed during a detailed security review of the system, typically referred to as security certification - a comprehensive assessment of the system’s management, operational, and technical security controls. The output of the security certification is used to reassess the risks and update the system security plan, thus providing the factual basis for an authorizing official to render a security accreditation decision.
Harris Information Technology Services Certification and Accreditation Services are delivered by trained and certified professionals who have extensive experience in Federal Certification and Accreditation processes, including:
- DoD Information Assurance Certification and Accreditation process (DIACAP)
- National Institute of Standards (NIST) FISMA based Certification and Accreditation process
- National Information Assurance Certification and Accreditation process (NIACAP)
Harris IT Services Certification and Accreditation Services span all relevant processes, including:
- Security Plan Development
- System Identification Profiles
- Security Control Identification
- Security Control Assessment/Testing
- Risk Assessments
- Plans of Action and Milestones
We leverage existing standards to include ISO-17799/BS-7799 and the Gramm-Leach-Bailey Act (GLBA) to review all existing security safeguards. This includes security policies and procedures, security architecture, configurations, change management controls and processes, and security design. We can determine mitigation strategies and residual risks.
Our services cover the full spectrum of information classifications and can be delivered on-site via staff augmentation or off-site from our facilities.
Program Spotlight
Harris IT Services delivers Certification and Accreditation Services to the Air Force's 88th Communications Group (CG) at Wright-Patterson AFB (WPAFB),
including staff augmentation within the Information Assurance (IA) Office as Technical Advisor; development and maintenance of Certification and
Accreditation (C&A) packages for major applications; and process management and coordination on all C&A actions for systems that interface
with the WPAFB Metropolitan Area Network (MAN).