AR 525-26 governs Army mission assurance policy, responsibilities, processes, risk management, and oversight for defense critical infrastructure.
View AR 525-26 on armypubs.army.mil
It covers mission assurance identification, assessment, risk management, monitoring, reporting, and command oversight. It requires annual threat and hazard assessments, corrective action planning, and reporting of specified changes affecting task critical assets.
Mission assurance overview MA, as established in DoDD 3020.40, is a process to protect or ensure the continued function and resilience of capabilities and assets, including personnel, equipment, facilities, networks, information and information systems, infrastructure, and supply chains which are critical to the execution of DoD mission-essential functions (MEFs) in any operating environment or condition. (paragraph 3-1)
The MA constructs four processes are identification, assessment, risk management, and monitoring and reporting. (paragraph 3-2)
Organizations must assess threats and hazards to assets annually utilizing the AHTA. (paragraph 5-1)
The asset owner hosts a RRP working group to develop initial CA courses of action no later than 14 days after finalizing the MAAR. (paragraph 6-3)
TCA 2 asset owners will update MARMS, notify DCS, G 3/5/7, and respective mission owners of change to the assets operational status and situational reporting within 48 hours after incident discovery. (paragraph 7-2)