[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-165317-en":3,"doc-seo-165317-105":30,"detail-sidebar-cat-1-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":11,"category_id":12,"category_name":13,"doc_title":14,"doc_description":15,"doc_content":16,"file_id":17,"file_url":18,"file_type":19,"file_size":20,"view_count":4,"is_deleted":4,"is_public":11,"is_downloadable":11,"audit_status":11,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":27,"seo_description":15,"update_tm":28,"read_time":29},165317,687207020761,"Oliver Hayes","https://ap-avatar.wpscdn.com/davatar_155a257f0dc6eb9ab79c44ca47cae57d",1,11,"Presentations","System Security Plan - Plan Version 2.0","System Security Plan template for documenting a system’s security posture, roles, responsibilities, and control readiness. Covers system security plan approvals, executive overview guidance, and a structured description of system information including system definition for the system or cloud service offering. Includes contact information sections that define the responsibilities of the Authorizing Official and the System Owner, supporting approval, authorization, interim authorization, and ongoing security implementation aligned to risk acceptance goals.","\u003CTEMPLATE>\nSystem Security Plan\n\u003CAGENCY>\n\u003CSystem Name>\n\u003CPlan Version 2.0>\n\u003CDate>\nTABLE OF CONTENTS \u0013TOC \\o \"1-3\" \\h \\z \\u\u0014\n\u0013 HYPERLINK \\l \"_Toc158388532\" \u0014Document Revision History\t\u0013 PAGEREF _Toc158388532 \\h \u00143\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388533\" \u0014Prepared by\t\u0013 PAGEREF _Toc158388533 \\h \u00143\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388534\" \u0014Prepared for\t\u0013 PAGEREF _Toc158388534 \\h \u00143\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388535\" \u00141. SYSTEM SECURITY PLAN APPROVALS\t\u0013 PAGEREF _Toc158388535 \\h \u00144\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388536\" \u00142. EXECUTIVE SUMMARY\t\u0013 PAGEREF _Toc158388536 \\h \u00145\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388537\" \u00143. SYSTEM INFORMATION\t\u0013 PAGEREF _Toc158388537 \\h \u00146\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388538\" \u00143.1 System Definition: Key attributes of the System / Cloud Service Offering (CSO)\t\u0013 PAGEREF _Toc158388538 \\h \u00146\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388539\" \u00144. CONTACT INFORMATION\t\u0013 PAGEREF _Toc158388539 \\h \u00148\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388540\" \u00144.1 Authorizing Official\t\u0013 PAGEREF _Toc158388540 \\h \u00148\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388541\" \u00144.2 System Owner\t\u0013 PAGEREF _Toc158388541 \\h \u00148\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388542\" \u00144.3 Information Owner (A.K.A. Data Owner)\t\u0013 PAGEREF _Toc158388542 \\h \u00149\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388543\" \u00144.4 Assignment of Security Responsibility: Agency Chief Information Security Officer / Information Security Officer\t\u0013 PAGEREF _Toc158388543 \\h \u001410\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388544\" \u00145. SYSTEM ADMINISTRATION\t\u0013 PAGEREF _Toc158388544 \\h \u001410\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388545\" \u00146. Technical System Information\t\u0013 PAGEREF _Toc158388545 \\h \u001411\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388546\" \u00146.1 Type of Users\t\u0013 PAGEREF _Toc158388546 \\h \u001411\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388547\" \u00146.2 Software Inventory\t\u0013 PAGEREF _Toc158388547 \\h \u001411\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388548\" \u00146.3 Remote Services (Other Than Web Services / Cloud)\t\u0013 PAGEREF _Toc158388548 \\h \u001412\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388549\" \u00146.4 Security and Management Technologies\t\u0013 PAGEREF _Toc158388549 \\h \u001412\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388550\" \u00147. Illustrated Architecture and Narratives\t\u0013 PAGEREF _Toc158388550 \\h \u001413\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388551\" \u00147.1 Illustrated Architecture\t\u0013 PAGEREF _Toc158388551 \\h \u001413\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388552\" \u00147.2 System/Authorization Boundary Diagram\t\u0013 PAGEREF _Toc158388552 \\h \u001414\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388553\" \u00147.3 Network Diagram\t\u0013 PAGEREF _Toc158388553 \\h \u001415\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388554\" \u00147.4 Information/Data Flow Diagram\t\u0013 PAGEREF _Toc158388554 \\h \u001415\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388555\" \u00148. Services, Ports, and Protocols\t\u0013 PAGEREF _Toc158388555 \\h \u001416\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388556\" \u00149. Separation of Duties\t\u0013 PAGEREF _Toc158388556 \\h \u001417\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388557\" \u001410. System Interconnections / External Systems and Services\t\u0013 PAGEREF _Toc158388557 \\h \u001418\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388558\" \u001411. Minimum Security Controls\t\u0013 PAGEREF _Toc158388558 \\h \u001424\u0015\u0015\n\u0013 HYPERLINK \\l \"_Toc158388559\" \u0014SSP Required Appendices List\t\u0013 PAGEREF _Toc158388559 \\h \u0014227\u0015\u0015\n\u0015\nDocument Revision History\nPrepared by\nPrepared for\n1. SYSTEM SECURITY PLAN APPROVALS\nAuthorized by Signatures\nBy signing this System Security Plan (SSP), we agree that it is complete and is the current version to be used for the security assessment.\nSystem Owner\n2. EXECUTIVE SUMMARY\n[Provide a high-level executive summary of the system security plan]\nDescribe the system, environment, work you have done regarding the system implementation for the environment; relevant findings and relevant aspects to consider such as being in compliance with HIPAA, etc.\nProvide a brief explanation of the business benefit, the importance of this system and what the system delivers and the main purpose/intentions of this SSP.\n{A summary table is provided for the Executive review.  Although not required, it is recommended as an overview of the control implementation status for each control family.}\nControls Status Summary Table\n3. SYSTEM INFORMATION\nThe following subsections provide a description of services, functions, environment, and the personnel responsible for its security and management.\n3.","cbCaio5LHNKjtVR4","https://ap.wps.com/l/cbCaio5LHNKjtVR4","docx",399270,233,"English","en",105,"# Document Revision History\n# Prepared by\n# Prepared for\n# 1. SYSTEM SECURITY PLAN APPROVALS\n# 2. EXECUTIVE SUMMARY\n# 3. SYSTEM INFORMATION\n## 3.1 System Definition: Key attributes of the System / Cloud Service Offering (CSO)\n# 4. CONTACT INFORMATION\n## 4.1 Authorizing Official\n## 4.2 System Owner\n## 4.3 Information Owner (A.K.A. Data Owner)\n## 4.4 Assignment of Security Responsibility: Agency Chief Information Security Officer / Information Security Officer\n# 5. SYSTEM ADMINISTRATION","[{\"question\":\"What is the purpose of a System Security Plan (SSP) in this template?\",\"answer\":\"The SSP records that the plan is complete and current for security assessment use, supporting agreement on readiness and security implementation under an acceptable level of risk.\"},{\"question\":\"What responsibilities does the Authorizing Official have?\",\"answer\":\"The Authorizing Official approves security plans, authorizes system operation, issues interim authorization under conditions, or denies authorization and halts operations if unacceptable risks exist.\"},{\"question\":\"What responsibilities does the System Owner perform?\",\"answer\":\"The System Owner coordinates development of the SSP, maintains and updates it for significant changes, ensures user and support training, and assists in identifying and assessing common security controls.\"}]","System Security Plan - Plan Version 2.0 | DOCX",1788169667,82,{"code":4,"msg":31,"data":32},"ok",{"site_id":24,"language":23,"slug":33,"title":14,"keywords":34,"description":15,"schema_data":35,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":28},"system-security-plan-plan-version-20","",{"@graph":36,"@context":85},[37,54,68],{"@type":38,"itemListElement":39},"BreadcrumbList",[40,44,48,51],{"item":41,"name":42,"@type":43,"position":11},"https://docshare.wps.com","Home","ListItem",{"item":45,"name":46,"@type":43,"position":47},"https://docshare.wps.com/template/","Template",2,{"item":49,"name":13,"@type":43,"position":50},"https://docshare.wps.com/template/presentations/",3,{"item":52,"name":14,"@type":43,"position":53},"https://docshare.wps.com/template/system-security-plan-plan-version-20/165317/",4,{"url":52,"name":14,"@type":55,"author":56,"headline":14,"publisher":58,"fileFormat":61,"inLanguage":23,"description":15,"dateModified":62,"datePublished":62,"encodingFormat":61,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":57},"Person",{"url":41,"name":59,"@type":60},"DocShare","Organization","application/vnd.openxmlformats-officedocument.wordprocessingml.document","2026-08-31",true,{"@type":65,"interactionType":66,"userInteractionCount":4},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What is the purpose of a System Security Plan (SSP) in this template?","Question",{"text":75,"@type":76},"The SSP records that the plan is complete and current for security assessment use, supporting agreement on readiness and security implementation under an acceptable level of risk.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"What responsibilities does the Authorizing Official have?",{"text":80,"@type":76},"The Authorizing Official approves security plans, authorizes system operation, issues interim authorization under conditions, or denies authorization and halts operations if unacceptable risks exist.",{"name":82,"@type":73,"acceptedAnswer":83},"What responsibilities does the System Owner perform?",{"text":84,"@type":76},"The System Owner coordinates development of the SSP, maintains and updates it for significant changes, ensures user and support training, and assists in identifying and assessing common security controls.","https://schema.org",{"og:url":52,"og:type":87,"og:title":14,"og:site_name":59,"og:description":15},"article",{"robots":89,"canonical":52},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,96,101,106,111,116,121,126,131],{"id":12,"doc_module":11,"doc_module_name":46,"category_name":13,"show_sort_weight":94,"slug":95},90,"presentations",{"id":97,"doc_module":11,"doc_module_name":46,"category_name":98,"show_sort_weight":99,"slug":100},12,"Resumes",80,"resumes",{"id":102,"doc_module":11,"doc_module_name":46,"category_name":103,"show_sort_weight":104,"slug":105},14,"Invoices",70,"invoices",{"id":107,"doc_module":11,"doc_module_name":46,"category_name":108,"show_sort_weight":109,"slug":110},15,"Posters",60,"posters",{"id":112,"doc_module":11,"doc_module_name":46,"category_name":113,"show_sort_weight":114,"slug":115},16,"Social Media",50,"social-media",{"id":117,"doc_module":11,"doc_module_name":46,"category_name":118,"show_sort_weight":119,"slug":120},17,"Forms",40,"forms",{"id":122,"doc_module":11,"doc_module_name":46,"category_name":123,"show_sort_weight":124,"slug":125},18,"Letters",30,"letters",{"id":127,"doc_module":11,"doc_module_name":46,"category_name":128,"show_sort_weight":129,"slug":130},21,"Paper Templates",5,"papers-templates",{"id":132,"doc_module":11,"doc_module_name":46,"category_name":133,"show_sort_weight":4,"slug":134},158,"General","general-158"]