Templates
Information Security
DIACAP Compliance Checklist
📋

DIACAP Compliance Checklist

1
Identify systems for DIACAP assessment
2
Deliver initial briefing to system owner and stakeholders
3
Approval: System Owner Agreement
4
Review system documentation
5
Perform system categorization
6
Identify and document applicable security controls for the system
7
Implement applicable security controls
8
Perform self-assessment of implemented security controls
9
Approval: Self-assessment Results
10
Develop plans of action & milestones (POA&M) for mitigating identified vulnerabilities
11
Perform validation of security control effectiveness
12
Approval: Security Control Validation
13
Prepare a DIACAP security package
14
Submit DIACAP security package for Certification Determination
15
Approval: DIACAP Security Package
16
Develop a system security plan (SSP)
17
Implement changes based on Certification Determination
18
Monitor system for continuous security control effectiveness