A list of the approved CIO Directives.
| 07-06 | Software for Encryption of Agency Information -- Portable Media and E-mail Attachments | 01/09/2007 | Informational |
| 07-02 | CMS Chief Iinformation Security Officer (CISO) Forum for Information System Security Officers (ISSO) | 07/12/2007 | Informational |
| 07-01 | Transporting Sensitive Information: Encryption Requirements for Data Leaving CMS Data Centers | 07/12/2007 | Action |
| 07-03 | Mandatory Encryption on all Removable Storage Devices | 08/13/2007 | Action |
| 07-04 | CMS Information Security Incident Handling and Breach Analysis/Notification Procedure | 08/21/2007 | Action |
| 07-05 FY 2008 | FY 2008 Annual Security Controls Testing | 12/10/2007 | Action |
| 07-05 Attachment A | CMS FISMA Systems | 12/10/2007 | Informational |
| 07-05 Attachment C | Attestation of Annual Security Controls Testing | 12/10/2007 | Action |
| 07-05 Attachment B | Instructions for Security Control Testing | 12/10/2007 | Action |
| 07-05 Attachment D | ST&E Testing Plan | 12/10/2007 | Action |