Skip to Main Content

CIO Policies

Official repository for CMS-wide information technology (IT) policies, standards, and directives, maintained to guide and direct the CMS IT community.

Loading

Title Updated Type
Policy/ Capability Maturity Model Integration (CMMI) v1.0 2006-12-12 Policy
Policy/ Analog Line Request & Usage v1.0 2004-08-24 Policy
Policy/ Disk Space Storage Management v1.0 2004-08-25 Policy
Policy/ Firewall Administration v1.0 2008-07-15 Policy
Policy/ Separation of Duties v1.0 2006-03-31 Policy
Policy/ VPN Access to 3-Zone Segments v1.0 2008-01-09 Policy
Policy/ IT Investment Mgmt & Governance v2.0 2007-05-17 Policy
Policy/ Section 508 Compliance v2.0 2008-03-28 Policy
Policy/ Acceptable Use v2.0 2008-12-08 Policy
Policy/ Wireless Client Access v1.0 2010-05-12 Policy
Policy/ CMS CIO Policy Framework v1.01 2015-12-21 Policy
Standard/ ARS - Acceptable Risk Safeguards 2017-11-21 Technical Standard
Standard/ Business Partner System Security Manual (BPSSM) 2014-01-17 Technical Standard
Standard/ RMH Vol I Chapter 01 Risk Management in the XLC 2012-11-08 Technical Standard
Standard/ RMH Vol III Standard 3-1 Authentication 2014-04-17 Technical Standard
Standard/ RMH Vol III Standard 3-2 Cloud Computing 2011-05-03 Technical Standard
Standard/ RMH Vol III Standard 4-3 Non-Standard Account Authenticator Management 2013-10-30 Technical Standard
Standard/ RMH Vol III Standard 4-4 Contingency Planning 2014-02-28 Technical Standard
Standard/ RMH Vol III Standard 7-2 Security Impact Analysis 2014-06-25 Technical Standard
Policy/ CMS Information Systems Security and Privacy Policy v1.0 2016-04-26 Policy
CIO Directive 16-02: CMS Security of Federal Tax Information 2016-06-02 Directive
TRA/ Volume I – Foundation, 2017 Release 1 - v1.0 2017-10-11 Technical Standard
TRA/ Volume II – Network Services, 2017 Release 1 - v1.0 2017-10-11 Technical Standard
TRA/ Volume III – Infrastructure Services, 2017 Release 1 - v1.0 2017-10-11 Technical Standard
TRA/ Volume IV – Development and Application Services, 2017 Release 1 - v1.0 2017-10-11 Technical Standard
TRA/ Volume V – Data Management, 2017 Release 1 - v1.0 2017-10-11 Technical Standard
Standard/ RMH Chapter 08: Incident Response 2017-01-31 Technical Standard
Standard/ RMH Chapter 12: Security and Privacy Planning 2017-01-31 Technical Standard