Updating the DLIS Risk Mitigation Plan: Necessity and Strategy

700 Words2 Pages

Introduction to the DLIS Risk Mitigation (or RM) Plan
The purpose of the RM Plan will be to provide an updated RM plan of the Department of Defense Defense Logistics Agency Defense Logistics Information Service. The current RM Plan has become outdated due to advancements in technology, technology vulnerability and exploitation, government regulations, and data protection standards. The new RM Plan project will be designed to bring the plan up to date with all requirements and set a ready framework for further updates as required. The importance of the plan is stated as the necessity to proactively mitigate the risk to the DLIS and the information secure and the information the DLIS is accountable for.

Outline for the DLADLIS RM Plan
The outline for the RM Plan is being submitted for immediate implementation based on the previously approved Risk Analysis plan. The DLADLIS will set the delivery date for the deployment of the RM plan based on their requirements. As with the previous Risk Assessment Plan, the DLADLIS will set the date and requirements for the RM plan to proceed.

Scope and boundaries for the Risk Mitigation Plan
The scope of the DLADLIS RM Plan project will include the DLIS management structure, personnel and the customers who require the DLIS information. The DLA has in excess of 26,000 employees. The RM Plan scope will include all of the combat support logistics information under the administration of the DLIS.
The boundaries for the RM plan would be defined by the criteria and requirements set forth by the RM plan mandate. An independent audit of the current RM situation should be undertaken in order to establish the RM status quo. A new RM Plan will comply with all current Federal and DOD regula...

... middle of paper ...

... Production environment
• Establish ongoing monitoring of mitigation phalanx
• Establish ongoing updates to all network, servers, mitigation and countermeasures
• Evaluate annually and per incident/event that falls to the accountability of the DLADLIS IT and Security departments.
• Document RM deployment

The key roles and responsibilities are defined as follows
DLA Project Management for the RM Plan project
Implementation of the RM Plan project
On-going RM Plan auditing
On-going RM Plan compliances
On-going RM Plan execution
On-going RM Plan monitoring
DLIS RM Plan project development in coordination with the DLIS/DLA
RM Plan project management schedule and coordination
RM Plan execution, completion and final project report
RM Plan Project Team
RM Plan project research and development
RM Plan creation
RM Plan Change Management process
RM Plan documentation

Open Document