![]() |
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
Government Solutions
Government Sales
|
|
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
DCID 6/3 ComplianceOn June 5, 1999, the Director of Central Intelligence issued directive 6/3 (DCID 6/3) titled "Protecting Sensitive Compartmented Information Within Information Systems." It establishes the security policy and procedures for storing, processing, and communicating classified intelligence information in information systems. An implementation manual corresponding to DCID 6/3 was published on May 24, 2000.How does CipherOptics help? CipherOptics CipherEngine enables Secure Information Sharing, which assures the confidentiality, authenticity, and integrity of data in motion on any network. Our approach to protecting both your network and your data is to deny access to everyone, permit by exception. With that as our driving force, our solutions provide you with both encryption and authentication of all your critical information on the LAN or Wireless LAN. Using powerful 256-bit AES encryption that is approved by the NSA for "sensitive" information, CipherOptics appliances authenticate networks and packets and protect data. Using the robust secure hash algorithm (SHA-1), the security gateways verify the integrity of the data, rejecting any packets that have been manipulated or altered. Secure hash can also be used to thwart unauthorized intrusion at the network level. The security gateway's deterministic firewall feature can reject any packets that lack the proper encryption-based authentication of a trusted endpoint. This effectively turns the local network dark to all unauthenticated traffic from the outside network. In support of the DCID 6/3, CipherOptics CipherEngine can also use encryption to separate data of different security levels that travel on the same network (cryptographic segmentation). Best practice for DCID 6/3 data security compliance requires a layered approach to network and data security. By protecting confidential data in motion, CipherOptics is an important component of this comprehensive security strategy. CipherOptics data protection gateways are FIPS-140-2-validated, Common Criteria certified, and available on government buying vehicles. They are field-proven in some of the most security-conscious networks in the world and are the preferred solution for securing high-speed IP networks by many agencies. Customers include the Social Security Administration, Department of Energy, Department of Agriculture, the U.S. Coast Guard, NASA, U.S. Army and the National Security Agency. What does CipherOptics do? CipherOptics is the leader in network-wide encryption. Offering an innovative policy and key management solution, coupled with high speed, low latency encryption technology, CipherOptics helps their customers mitigate the risk of data leakage, loss and theft over any network. Who is affected by DCID 6/3? The directive applies "to all United States government organizations', their commercial contractors', and Allied governments' information systems that process, store, or communicate intelligence information." What are the requirements of DCID 6/3? Because intelligence information is a vital asset to the effective performance of national security roles, it is essential that this information be properly managed, and that its confidentiality, integrity, and availability be ensured. To that end, DCID 6/3 advocates the use of NSA-approved cryptography: What are the penalties for DCID 6/3 non-compliance? Failure to comply with DCID's data security provisions could jeopardize government contracts. How do organizations comply with DCID 6/3? All systems must be certified and accredited in compliance with the requirements stated in the associated implementation manual. That process consists of interdependent phases and steps whose scope and specific activities vary with the information system being certified and accredited. For intelligence data in motion, DCID 6/3 compliance requires information systems that deliver robust encryption and separation of the data. Helpful Resources DCID 6/3 Policy DCID 6/3 Manual |
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
Copyright 2002-2008 CipherOptics, Inc. | All rights reserved | 1-877-878-6655 Trademark and Legal Notices | Privacy Policy | Site Map |
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
||||||||||||||||||||||||||||||||||||||||||||||||||||