• No results found

Requirements for CFCP Certification

N/A
N/A
Protected

Academic year: 2021

Share "Requirements for CFCP Certification"

Copied!
6
0
0

Loading.... (view fulltext now)

Full text

(1)

RequiRements foR CfCP CeRtifiCation

To support the growing demand for skilled security professionals with the knowledge and background to support the Federal government’s mandate to ensure appropriate levels of security for every information system placed into operation, the FISMA Center is offering a new certification: Certified FISMA Compliance Practitioner (CFCP). Applicants must have at least one year of FISMA compliant C&A experience and have passed the CFCP exam. all CfCP CeRtifiCation holdeRs shall abide by the CfCP Code of ethiCs:

1. Act responsibly and ethically, in accordance with applicable laws and guidance 2. Promote the information security discipline

3. Share knowledge with those inside and outside of information security 4. Strive to advance information security personally and professionally 5. Avoid potential and actual conflicts of interest

6. Avoid compromising the reputation and standing of the information security field

7. Protect IT assets, systems, networks and information to the highest professional ethical standards 8. Advocate compliance with all Federal information security legislation and mandates

9. Refrain from intentionally maligning or damaging the reputation of peers, colleagues or employers

10. Use sound and informed judgment when dealing with sensitive personally identifiable information (PII), Privacy Act data, and financial data

Continuing PRofessional eduCation (CPe) CRedits:

All individuals who become certified will be required to obtain 20 CPE credits annually in a training class (or classes) that are related to information security. The classes do not have to be FISMA Center classes. No CPE credits will be required in the first calendar year that you receive the certification.

to eaRn the CfCP designation, aPPliCants aRe RequiRed to:

1. Submit evidence of appropriate work experience in the form of a resume.

2. Provide reference points of contact which can verify the accuracy of the submitted resume. 3. Have taken and passed the CFCP exam.

(2)

CFCP Application

1. WoRk exPeRienCe

In order to qualify for the CFCP certification, an applicant must provide evidence of experience associated with the design, refinement, and/or implementation of a FISMA compliance program. The applicant has at least one (1) year of experience in one or more of the following areas:

• Executing security controls assessments on federal information systems and documenting risks. Within this area the applicant must be able to show they have performed the following tasks:

- Performed risk assessments

- Conducted assessments of the effectiveness of security controls

- Analyzed and documented operational risk for information technology systems

• Providing recommendations regarding how FISMA-compliant security controls can be effectively implemented in an information system and documenting security control implementations. Within this area the applicant must be able to show they have performed the following tasks:

- Documented the security posture of an information system in a System Security Plan, Security Assessment Report, Risk Assessment or similar document

- Participated in the design and architecture of an information system providing security inputs

• Experience providing guidance to senior management on how to operate and/or maintain a FISMA-compliant risk management framework.

2. Points of ContaCt

In order to evaluate the applicant’s work experience, a copy of the applicant’s current resume must be attached and submitted with the application. Additionally, the applicant must provide a point (or points) of contact for their employer(s) so that the FISMA Center can verify the work experience described in the resume. The point(s) of contact provided must:

1. Be an individual who supervised the applicant’s work, OR 2. Be a client who the applicant served

The reference must have their current role, and the role at the time you worked with/for them, indicated in the contact information part of the form.

(3)

CFCP Application

name address

telephone (1) / telephone (2) e-mail address

aPPliCation foRm foR CfCP CeRtifiCation

Applicants must have at least one year of FISMA compliant C&A experience and have passed the CFCP exam.

aPPliCant’s ContaCt infoRmation

CitizenshiP: u.s. Citizen other

CeRtifiCations: Please list any other cerifications you hold below

By signing below, you agree if approved, to abide by the CFCP Code of Ethics.

applicant’s signature date

(you can Copy and Paste a scanned image of your signature here) ( ) / ( )

(4)

CFCP Application - Point of Contact

aPPliCant’s ContaCt infoRmation

name (last, first mi) date of application telephone e-mail address

Point of ContaCt foR emPloyeR oR PRojeCt 1

supervisor name title employer

telephone e-mail address

(5)

CFCP Application - Point of Contact

Point of ContaCt foR emPloyeR oR PRojeCt 2 (if needed)

supervisor name title employer

telephone e-mail address

(6)

CFCP Application - Point of Contact

Point of ContaCt foR emPloyeR oR PRojeCt 3 (if needed)

supervisor name title employer

telephone e-mail address

References

Related documents

Minors who do not have a valid driver’s license which allows them to operate a motorized vehicle in the state in which they reside will not be permitted to operate a motorized

Lebedev Physical Institute, Moscow, Russia 41: Also at Budker Institute of Nuclear Physics, Novosibirsk, Russia 42: Also at Faculty of Physics, University of Belgrade, Belgrade,

In addition, elementary general education teachers seldom address social or play skills within the classroom setting, often the most critically challenging deficit in autism and

The FUTURACHEK line of laser check stock offers 15 security features and includes an attractive, custom pantograph available in two color formats. Printed on premium safety paper, the

To capture the traditional spiritual power of the Bozhe agents that is highly revered and honored by the Sabat Bet Gurage peoples, sheyikh Budalla seemed to have

An analysis of the economic contribution of the software industry examined the effect of software activity on the Lebanese economy by measuring it in terms of output and value

H1: SMEs representing individual clusters (based on the use of marketing communication tools and their intended use) in terms of selected attributes (enterprise size,

On Setup/ Options | 12 – Tax/NI Parameters, the Student Loan Thresholds section has been renamed Student/Postgraduate Student Loan Thresholds and a Rates and Thresholds button