(Start: OMB Exhibit 300 Attachment 2 for the Initial Investment Decision (IID))
Review
- FAA FAST AMS Lifecycle Phases and Decisions guidance website
- FAA FAST ISS Flow Chart of the IIA section
- Security engineering activities
Update
- CONOPS of system.
- ISS section of the Preliminary Requirements. (pPR document).
- Apply 800-53.
- Tailor 800-53 security requirements to your acquisitions.
- Apply 800-53.
Generate
- Basis of Estimates (BOE) on security cost estimates for alternatives.
- SCAP with your Service Unit/Service Area Certification Team Lead.
- The preliminary Information System Security Plan, (ISSP).
- Preliminary System Characterization/Categorization.
- Preliminary vulnerability and risk assessment.
Deliverable(s)
- BOE on security cost estimates for alternatives.
- OMB Exhibit 300, Attachment 2: Business Case Analysis Report (BCAR)
- Updated OMB Exhibit 300, Attachment 1: (pPR)
- Requirements for the ISS section of the (pPR) to include the 800-53 controls.
- Preliminary vulnerability and risk assessment.
- Preliminary SCAPs document
- Preliminary ISSP with security policy statement.
- Preliminary System Characterization/Categorization.
End IIA for AMS decision point: #3
Last updated: