Government Regulations
DCID 6.3
Content Type: Standard ContentLicense Type: Included
Director of Central Intelligence Directive (DCID) 6.3 is the certification and accreditation process used by federal agencies working on intelligence projects (e.g., the CIA). Specifically, information technology projects that require that anyone working on them has a Top Secret, Sensitive Compartmentalized Information (SCI) clearance use the DCID 6.3 process.
DIACAP 2007
Content Type: Standard ContentLicense Type: Included
DIACAP is a standardized methodology for evaluating the security posture of Department of Defense (DoD) Information Systems for certification and accreditation (C&A). The DoD will certify information systems through an enterprise process for identifying, implementing and management Information Assurance (IA) capabilities and services.
DODI 8500.1 & 8500.2
Content Type: Standard ContentLicense Type: Included
Department of Defense Directive (DoDD) 8500.1 establishes information assurance (IA) requirements to be identified and included in the design, acquisition, installation, operation, upgrade and replacement of all DoD information systems. DoDI 8500.2 provides more detailed instructions on how to carry out the DoDD 8500.1 policy and how it will be enforced.
FISMA 2002
Content Type: Standard ContentLicense Type: Included
Federal Information Security Management Act (FISMA) requires each federal agency to develop, document, and implement an agency-wide program to provide information security for the information and information systems that support the operations and assets of the agency.
OMB Memorandums
Content Type: Standard ContentLicense Type: Included
Agiliance supports the following Office of Management and Budget Memorandums that are covered by the NIST SP 800-66 Content Pack:
- 05-24: Implementation of Homeland Security Presidential Directive (HSPD) 12
- 05-16: Regulation on Maintaining Telecommunication Services During a Crisis or Emergency in Federally-owned Buildings
- 06-16: Protection of Sensitive Agency Information
- 07-16: Safeguarding Against and Responding to the Breach of Personally Identifiable Information
- 07-06: Validating and Monitoring Agency Issuance of Personal Identity Verification Credentials
US General Privacy
Content Type: Standard ContentLicense Type: Included
The Privacy Content Pack includes the most common privacy regulations and frameworks from the USA. These include:
- California Senate Bill 1386
- California Assembly Bill 1950
- Computer Security Act of 1987
- Electronic Communication Privacy Act (1986)
- Generally Accepted Privacy Principles (GAPP)
- Massachusetts 201 CMR 17
- Privacy Act of 1974
- Telephone Consumer Protection Act (1991)

