Skip to content

Traditional Security Checklist

Rules, Groups, and Values defined within the XCCDF Benchmark

  • IS-02.01.12

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - IDS Access/Secure Control Units Must be Located within the Secure Room Space

    &lt;VulnDiscussion&gt;Failure to ensure that IDS Access and Secure Control Units used to activate and deactivate alarms (primarily motion detectors...
    Rule High Severity
  • IS-02.01.13

    <GroupDescription></GroupDescription>
    Group
  • Information Security (IS) - Continuous Operations Facility: Access Control Monitoring Methods

    &lt;VulnDiscussion&gt;Failure to control door access to a Continuous Operations Facility containing classified SIPRNET assets may result in immedia...
    Rule High Severity
  • IS-02.01.14

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - Access Control During Working Hours Using Visual Control OR Automated Entry Control System (AECS) with PIN / Biometrics

    &lt;VulnDiscussion&gt;Failure to properly monitor and control collateral classified open storage area access doors during working hours (while the ...
    Rule High Severity
  • IS-02.01.15

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - Automated Entry Control System (AECS) and Intrusion Detection System (IDS) Head-End Equipment Protection: The physical location (room or area) containing AECS and IDS head-end equipment (server and/or work station/monitoring equipment) where authorization, personal identification or verification data is input, stored, or recorded and/or where system status/alarms are monitored must be physically protected.

    &lt;VulnDiscussion&gt;Inadequate physical protection of Intrusion Detection System or Automated Entry Control System servers, data base storage dri...
    Rule High Severity
  • IS-02.02.01

    <GroupDescription></GroupDescription>
    Group
  • Information Security (INFOSEC) - Secure Room Storage Standards - Structural Integrity Checks

    &lt;VulnDiscussion&gt;Failure to ensure that there is structural integrity of the physical perimeter surrounding a secure room (AKA: collateral cla...
    Rule Medium Severity
  • IS-02.02.02

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - IDS Performance Verification

    &lt;VulnDiscussion&gt;Failure to test IDS functionality on a periodic basis could result in undetected alarm sensor or other system failure. This ...
    Rule Medium Severity
  • IS-02.02.03

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - Masking of IDS Sensors Displayed at the Intrusion Detection System (IDS) Monitoring Station

    &lt;VulnDiscussion&gt;Failure to meet standards for the display of masked alarm sensors at the IDS monitoring station could result in the location ...
    Rule Medium Severity
  • IS-02.02.04

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - IDS Alarm Monitoring Indicators, both audible and visual (Alarm Status) must be displayed for each sensor or alarmed zone at the monitoring station.

    &lt;VulnDiscussion&gt;Failure to meet standards for the display of audible and visual alarm indicators at the IDS monitoring station could result i...
    Rule Medium Severity
  • IS-02.02.05

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - Intrusion Detection System (IDS) / Automated Entry Control System (AECS) Primary and Emergency Power Supply

    &lt;VulnDiscussion&gt;Failure to meet standards for ensuring that there is an adequate commercial and back-up power sources for IDS/AECS with unint...
    Rule Medium Severity
  • IS-02.02.06

    <GroupDescription></GroupDescription>
    Group
  • Vault/Secure Room Storage Standards - Intrusion Detection System and Automated Entry Control System (IDS/AECS) Component Tamper Protection

    &lt;VulnDiscussion&gt;Failure to tamper protect IDS/AECS component enclosures and access points external to protected vaults/secure rooms space cou...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules