Presentation on theme: "NOAA Computer/Hard Drive Sanitization Validation Form and PDA/Cell Phone Destruction Worksheet."— Presentation transcript:
NOAA Computer/Hard Drive Sanitization Validation Form and PDA/Cell Phone Destruction Worksheet
Document method of sanitization of electronic hardware to include: PDAs, Laptops, Desktops, SIMS Cards, copiers, printer/scanners and External Hard Drives Includes all accountable assets being transferred from NOAA References: NOAA National Disposal Plan for Personal Property Management: http://www.pps.noaa.gov/060111_noaa_national_disposal_plan.pdf NIST Special Publication 800-88 (Guidelines for Media Sanitization): http://csrc.nist.gov/publications/nistpubs/800-88/NISTSP800-88_rev1.pdf
Organization – Select the owning NOAA organization from the drop down menu, which corresponds to the custodial area Property Custodian Code (Custodial Area) – Enter the unique, alpha-numeric Property Custodian Code, assigned to the Property Custodial, for which custodial responsibility of the identified barcode(s) fall under Equipment Type – Enter the type of equipment for the identified barcode’s. The user must select either Computer/Hard Drive or PDA/Cell Phone, not both. Only one type of equipment can be identified per sheet Barcode Number – Enter the barcode number for the property to be sanitized Model Number – Enter the related model number for the identified barcode Serial Number - Enter the related serial number for the identified barcode Description – Enter the related description for the identified barcode
Sanitization Method Used – Select the sanitization method from the drop down menu that was utilized to remove the secure data from the computer/hard drive. Reference the table below as necessary. a) Clear b) Purge c) Destroy
Final Disposition of Media – Enter the applicable status for the data removed as a result of sanitation. a) Disposed – The device will be destroyed. b) Reused Internally - The device will continue to be used within the current organization. c) Reused Externally - The device will be utilized by an outside organization, going forward. d) Returned to Manufacturer – The device will be returned to the original manufacturer. e) Other – All other future use or action to be taken regarding the identified device.
IT Security Official - This item should be completed by your ISSO (Information System Security Officer). Property Custodian – This item should be completed by the property custodian. Property Accountability Officer – This item should be completed by the respective property accountability officer.
The PC or local IT specialist must sanitize the hard drive to ensure it is unrecoverable or they must completely destroy the drive. Smartphone, PDA’s and Blackberry’s - Transfer outside of NOAA – If the PDA or Cell Phone is to be transferred outside of NOAA (including disposal), the device must be cleared / purged and then subjected to physical destruction prior to transfer outside of NOAA. A technical contact (Help Desk, Sys Admin, etc.) must either perform the wipe on the device or verify that the device is wiped clean prior to turning the device over to the Property Custodian or Property Contact.
Incorrect barcode numbers/serial numbers White outs and typed corrections Form does not match NF 37-50 PC and PAO sign and date before IT Form cannot be handwritten
Q – What if I am the PC and the IT official? A – Sign only as the PC and have another IT official or other federal employee sign in the IT spot. Q – Should I attach the form at the time I am doing the request? A – Yes, that way it can be reviewed before the assets are recycled. Q – Can this form be handwritten? A – No, it must be typed and no pen and ink changes are allowed either.