Solutions

Solutions

Solutions

Assurance Services

Circular diagram of The Dalton Gang's IT security consulting assurance services program
Circular diagram of The Dalton Gang's IT security consulting assurance services program
Circular diagram of The Dalton Gang's IT security consulting assurance services program

The TDG Security Lifecycle

TDG was started with a niche focus of providing IT security consulting to address the ongoing need for security assessments and system accreditation and authorization (A&A) in accordance with the FISMA, NIST, NIACAP, and DIACAP guidance and regulations. 

Assurance Services
Assurance Services
Assurance Services

Features

Features

Features

What's included?

Assessment and Authorization (A&A)

TDG has conducted over 700 A&A efforts for over 20 federal agencies. We have used various A&A tools such as CSAM, Xacta, RMS, and others. We have conducted efforts for all steps in the NIST RMF.

Assessment and Authorization (A&A)

TDG has conducted over 700 A&A efforts for over 20 federal agencies. We have used various A&A tools such as CSAM, Xacta, RMS, and others. We have conducted efforts for all steps in the NIST RMF.

Assessment and Authorization (A&A)

TDG has conducted over 700 A&A efforts for over 20 federal agencies. We have used various A&A tools such as CSAM, Xacta, RMS, and others. We have conducted efforts for all steps in the NIST RMF.

Security Program Evaluation

TDG has provided full security program evaluations for multiple federal agencies reporting at the CIO level in their organization. We provide as-is and desired end state comparisons using subject matter experts and employing automated tools to provide senior management executable short and long-term strategies.

Security Program Evaluation

TDG has provided full security program evaluations for multiple federal agencies reporting at the CIO level in their organization. We provide as-is and desired end state comparisons using subject matter experts and employing automated tools to provide senior management executable short and long-term strategies.

Security Program Evaluation

TDG has provided full security program evaluations for multiple federal agencies reporting at the CIO level in their organization. We provide as-is and desired end state comparisons using subject matter experts and employing automated tools to provide senior management executable short and long-term strategies.

Security Operations

To provide continuous monitoring at the operational and technical levels, we have supported federal agencies in developing strategies for continuous monitoring testing of controls on an annual basis. At a technical level we have conducted vulnerability scanning and assisted agencies in developing a DHS compliant Continuous Diagnostics and Mitigation (CDM) program.

Security Operations

To provide continuous monitoring at the operational and technical levels, we have supported federal agencies in developing strategies for continuous monitoring testing of controls on an annual basis. At a technical level we have conducted vulnerability scanning and assisted agencies in developing a DHS compliant Continuous Diagnostics and Mitigation (CDM) program.

Security Operations

To provide continuous monitoring at the operational and technical levels, we have supported federal agencies in developing strategies for continuous monitoring testing of controls on an annual basis. At a technical level we have conducted vulnerability scanning and assisted agencies in developing a DHS compliant Continuous Diagnostics and Mitigation (CDM) program.

Case Study

Case Study

Case Study

How we helped The Indiana University of Pennsylvania

In 2005, working with our academic partner – the Indiana University of Pennsylvania (a DHS/NSA Center for Academic Excellence in Information Assurance Education), TDG developed a copyrighted Senior System Managers (SSM) course that teaches senior federal managers how to implement and manage a federal information assurance program. The life cycle is 100% compliant with FISMA/NIST and was developed five years before NIST introduced their Risk Management Framework (RMF) process in NIST SP 800-37 rev1. All of our Assurance services follow this life cycle process approach.

Questions and Answers

Questions and Answers

Questions and Answers

Frequently asked
questions

Get answers to common questions about Aromatic, from customization to features, and see how it can help grow your business.

What makes TDG’s Assurance Services different?

We combine 15+ years supporting A&A/ATO under FISMA, NIST SP 800-53/53A, NIACAP/DIACAP, with hands-on experience delivering 800+ security assessment and authorization packages across civilian and commercial environments—accelerating compliance while reducing authorization risk.

Do you support Continuous Monitoring and Ongoing Authorization?

Yes. We build pragmatic continuous monitoring (ConMon) programs—dashboards, evidence collection, vulnerability management, control assessments, and POA&M tracking—that support Ongoing Authorization (OA) and yearly FISMA reporting at enterprise scale.

Can TDG help with DHS Continuous Diagnostics and Mitigation (CDM)?

Absolutely. We’ve supported FAA as an early DHS CDM adopter—performing tool evaluations, gap analyses, scanning/reporting architecture design, and transition plans—so agencies gain reliable, consolidated visibility with CEfFR/CEASARS-aligned reporting.

What makes TDG’s Assurance Services different?

We combine 15+ years supporting A&A/ATO under FISMA, NIST SP 800-53/53A, NIACAP/DIACAP, with hands-on experience delivering 800+ security assessment and authorization packages across civilian and commercial environments—accelerating compliance while reducing authorization risk.

Do you support Continuous Monitoring and Ongoing Authorization?

Yes. We build pragmatic continuous monitoring (ConMon) programs—dashboards, evidence collection, vulnerability management, control assessments, and POA&M tracking—that support Ongoing Authorization (OA) and yearly FISMA reporting at enterprise scale.

Can TDG help with DHS Continuous Diagnostics and Mitigation (CDM)?

Absolutely. We’ve supported FAA as an early DHS CDM adopter—performing tool evaluations, gap analyses, scanning/reporting architecture design, and transition plans—so agencies gain reliable, consolidated visibility with CEfFR/CEASARS-aligned reporting.

What makes TDG’s Assurance Services different?

We combine 15+ years supporting A&A/ATO under FISMA, NIST SP 800-53/53A, NIACAP/DIACAP, with hands-on experience delivering 800+ security assessment and authorization packages across civilian and commercial environments—accelerating compliance while reducing authorization risk.

Do you support Continuous Monitoring and Ongoing Authorization?

Yes. We build pragmatic continuous monitoring (ConMon) programs—dashboards, evidence collection, vulnerability management, control assessments, and POA&M tracking—that support Ongoing Authorization (OA) and yearly FISMA reporting at enterprise scale.

Can TDG help with DHS Continuous Diagnostics and Mitigation (CDM)?

Absolutely. We’ve supported FAA as an early DHS CDM adopter—performing tool evaluations, gap analyses, scanning/reporting architecture design, and transition plans—so agencies gain reliable, consolidated visibility with CEfFR/CEASARS-aligned reporting.

How can we help?

Interested in The Dalton Gang's services? Fill out the form to get in touch with us.

How can we help?

Interested in The Dalton Gang's services? Fill out the form to get in touch with us.

How can we help?

Interested in The Dalton Gang's services? Fill out the form to get in touch with us.

gradient background
gradient background
gradient background