Independent DIB implementation resource — not affiliated with or endorsed by the U.S. Department of WarView the official DoW campaign ↗
Print-ready implementation assets

Downloads

Checklists, crosswalks, matrices, and templates — every one generated from the same practice guidance published on this site, so they cannot drift out of date. Open an asset and print it, or save it as a PDF from your browser.

Independent material

None of these assets is official Department of War material and none confers compliance, certification, or contractual standing. Each carries a version, a review date, and a link back to the live guidance it was generated from. The official campaign ↗ remains authoritative for the practices themselves.

CHECKLISTIT · OT

Brilliant at the Basics 20-Practice Executive Checklist

One page per track covering all twenty practices with owner, effort, stage, and the single question an executive should ask about each.

  • All 20 practices in recommended sequence
  • Suggested owner and effort band
  • The one question to ask per practice
  • Maturity ladder for scoring
ExecutiveCompliance
Open and print →
TEMPLATEIT · OT

First 14 Days Action Plan

The first two weeks, sequenced — the 24-hour and 14-day actions from every practice in the first three stages, with space for owner and date.

  • 24-hour actions
  • 14-day actions
  • Owner and target-date columns
  • First validation check per practice
ExecutiveTechnical
Open and print →
CHECKLISTIT

IT Top 10 Implementation Checklist

Every implementation step and validation check for the ten IT practices, in the site's recommended sequence.

  • Implementation steps per practice
  • Validation checks
  • Operating metrics
  • Maturity ladder for scoring
TechnicalMSP
Open and print →
CHECKLISTOT

OT Top 10 Implementation Checklist

Every implementation step and validation check for the ten OT practices, with the safety and change-control considerations attached to each.

  • Implementation steps per practice
  • Validation checks
  • Safety considerations
  • Change-control considerations
CHECKLISTIT

IT Evidence Collection Checklist

The governance, configuration, operations, and validation artifacts worth retaining for each IT practice, with a column for where yours lives.

  • Evidence by practice and category
  • Location and owner columns
  • Retention prompt
  • Evidence maturity note
ComplianceTechnical
Open and print →
CHECKLISTOT

OT Evidence Collection Checklist

The governance, configuration, operations, and validation artifacts worth retaining for each OT practice, including maintenance-window and safety-review records.

  • Evidence by practice and category
  • Location and owner columns
  • Change and maintenance records
  • Safety note
ComplianceOT
Open and print →
CROSSWALKIT · OT

NIST SP 800-171 Rev. 2 Crosswalk

Every practice mapped to Rev. 2 requirement identifiers with relationship type, confidence, and an explicit caveat for each row.

  • Practice-to-requirement rows
  • Relationship type and confidence
  • Per-row caveat
  • Mapping method statement
CROSSWALKIT · OT

NIST SP 800-171 Rev. 3 Crosswalk

Practices mapped to Rev. 3 requirement identifiers where a reviewed mapping exists, with the same relationship, confidence, and caveat structure.

  • Rev. 3 identifiers
  • Relationship type and confidence
  • Per-row caveat
  • Note on Rev. 2 / Rev. 3 differences
MATRIXIT · OT

CMMC Level 2 Influence Matrix

Which practices influence which CMMC Level 2 practice identifiers — stated as influence, not as coverage or readiness.

  • Practice-to-CMMC identifier rows
  • Influence strength and confidence
  • Explicit non-coverage statement
  • Scope caveat
ComplianceExecutive
Open and print →
CROSSWALKIT · OT

NIST Cybersecurity Framework 2.0 Crosswalk

Practices mapped to CSF 2.0 outcome identifiers, useful for reporting the campaign against a framework leadership already recognizes.

  • Practice-to-CSF outcome rows
  • Relationship type and confidence
  • Per-row caveat
  • Note on outcomes versus controls
ComplianceExecutive
Open and print →
CROSSWALKIT · OT

CIS Controls v8.1 Crosswalk

Practices mapped to CIS Controls v8.1 safeguards — the most operationally concrete of the crosswalks, and a useful bridge for MSP conversations.

  • Practice-to-safeguard rows
  • Relationship type and confidence
  • Per-row caveat
  • Voluntary-benchmark note
TechnicalMSP
Open and print →
MATRIXIT · OT

MSP / MSSP Responsibility Matrix

A blank-by-design matrix for agreeing, in writing, who implements, who operates, who evidences, and who is accountable for each practice.

  • All 20 practices
  • Implement / operate / evidence / accountable columns
  • Suggested split guidance
  • Signature block
MSPExecutiveCompliance
Open and print →
BRIEFINGIT · OT

Executive / Board Briefing One-Pager

What the campaign is, what it is not, the six-stage sequence, the questions a board should ask, and the honest statement of what implementation does and does not do for contractual obligations.

  • What Brilliant at the Basics is and is not
  • The six-stage sequence
  • Board-level questions
  • Obligation and limitation statement
TEMPLATEIT · OT

30-Day Implementation Plan Template

A structured template for a first-month plan: the 24-hour, 14-day, and 30-day actions with owner, date, validation check, and evidence to retain.

  • Three action horizons
  • Owner and date columns
  • First validation check
  • Evidence-to-retain prompt
TechnicalExecutive
Open and print →
TEMPLATEIT · OT

90-Day Improvement Roadmap Template

A quarter-length roadmap organized by the six-stage sequence, with a current-and-target maturity column for each practice.

  • Six-stage roadmap
  • Current and target maturity columns
  • Dependency prompts
  • Quarterly review block
ExecutiveTechnical
Open and print →

All assets version 1.0, reviewed . Filenames are stable, so a saved PDF can be matched to the version it came from.