Additional directives are in development and will be published as they are completed. Periodically directives are removed or replaced as necessary.
Directives
AD-7107 - Cyber Security Policy
- 7107-AC1 Access Controls
- 7107-AT1 Awareness and Training
- 7107-AU1 Audit and Accountability
- 7107-CA1 Security Assessment and Authorization
- 7107-CM1 Configuration Management
- 7107-CP1 Contingency Planning
- 7107-IA1 Identification Authentication
- 7107-IR1 Incident Response
- 7107-MA1 Maintenance
- 7107-MP1 Media Protection
- 7107-PE1 Physical & Environmental Protection
- 7107-PL1 Planning
- 7107-PM1 Information Security Program Plan
- 7107-RA1 Risk Assessment
- 7107-SA1 System Service Acquisition
- 7107-SC1 Systems Communications Protection
- 7107-SI1 Systems Information Integrity
- 7107-MDM1 Acceptable Devices, Use, and Management
- 7107-MDM5 User Agreements for BYOD
- 7107-MDM11 Securing Mobile Devices When Travelling
- 7107-UR1 System Access and Acceptable Use
- 7107-UR2 Data Access and Data Protection
- 7107-UR3 Passwords
- 7107-UR4 Email Acceptable Use
- 7107-UR5 Internet Access and Acceptable Use
- 7107-UR6 Clear and Locked Screen
- 7107-UR7 Removable Media
- 7107-UR8 Portable Computers
- 7107-UR9 Remote Access – Users
- 7107-UR10 Clean Desk
AD-7115 – Digital First Policy
AD-1601 Telephony directives