
the most in-depth course available for students needing to perform DoD risk certification, accreditation, and risk management
InfoSec Institute offers the most in-depth course available for students needing to become accredited in DIARMF - Department of Defense Information Assurance Risk Management Framework. This is the most up-to-date information assurance standards you will find. This course is designed for DoD, IC, and other Federal Government employees and contractors. You will become familiar with NIST system of C&A that is known as Risk Management Framework (RMF) and mapped to NIST SP 800-53.
This course is built upon our DIACAP Boot Camp offers outstanding benefits, including:
Some of the additional changes for DIARMF are:
The InfoSec Institute DIACAP training course provides detailed, step-by-step information on how to manage the Information Assurance posture consistent with FISMA, the DODD 8500.1 and the DoDI 8500.2 standards. In the class, each DoDI 8500.2 IA control is covered in detail. This includes:
The courseware is designed such that it is appropriate for persons acting as the Validator Role, acting as a member of a Validation Team, or persons that undergo the Validation process as a System Owner.
InfoSec Institute is proud to present the DIARMF Boot Camp, a practical manager's immersion into the Department of Defense Information Assurance Certification and Accreditation Process (DIARMF).
In 2011 the Department of Defense (DoD) implemented the Department of Defense Risk Management Framework that supersedes the DoD 8510.1M DITSCAP. The DIARMF ensures that risk management is applied to information systems (IS).
Currently, the DIACAP consist of DIACAP packages (DIP, SIP, scorecard, POA&M with artifacts) and NIST 800-37 rev 1 consists of a Security Authorization Package (System Security Plan, Security Assessment Report & POA&M). Also, the roles between the NIST Risk Management Framework and the DoD 8500 series are different. So far, the DON CIO and ASD (NII) have come up with mapping between the roles and theĀ 800-53 controls.
The DIARMF will hopefully cover all of the gaps between the DoD C&A process and the new NIST 800-37, Risk Management Framework.
Using their experience in conducting over 100 IT security assessments, our class instructors will augment the instruction with examples of real-world experience to help students quickly relate and apply the concepts and strategies to their environments.
**We will be compiling more changes and updates as we find them. Very little is officially published, and above material is sourced from our own instructors who have insight into the DIARMF as well as public sites:
AS SEEN IN:




We believe in a commitment to your education. Our latest offering to the IT community has tutorials, videos, articles, white papers, and other resources and training materials that InfoSec Institute makes available for free. Below are some examples that relate to our IA classes. By reading these you should get a good idea of the types of skills you'll be learning in our courses.