CJIS Security Policy Statement

Effective May 4, 2026

Overview. Vetted Security Solutions LLC supports its public-safety and law-enforcement customers in meeting their obligations under the FBI Criminal Justice Information Services (CJIS) Security Policy and applicable state-level CJIS guidance, including bulletins issued by the Florida Department of Law Enforcement (FDLE). This statement summarizes Vetted Security Solutions’ approach to CJIS compliance for the products and services we deliver under the www.vettedsecuritysolutions.com brand.

CJIS compliance is a shared responsibility among the agency, its personnel, its contractors, and its vendors. The ultimate test is whether the agency can pass a CJIS audit based on its own policies and on the way it manages its users and vendors. We encourage every customer to assess its implementation strategy and to monitor FBI CJIS and FDLE bulletins for changes.

Vetted Security Solutions CJIS Practices.

Personnel Screening. Vetted Security Solutions technicians and support personnel who may come into contact with customer systems containing Criminal Justice Information (CJI) complete CJIS Security Policy background checks, CJIS Security Awareness training, and execution of the CJIS Security Addendum, as required by the agencies they serve. Certifications and ORI documentation are available to authorized customers on request.

Access Controls. Where Vetted Security Solutions hosts or supports systems used to process CJI, we implement and maintain access controls consistent with the current CJIS Security Policy, including role-based access, session management, audit logging of CJI transactions, and support for multi-factor authentication consistent with current FBI CJIS requirements.

Media and Physical Protection. Customer-facing systems supported by Vetted Security Solutions are managed under documented digital and physical access controls and audit-logging procedures aligned with CJIS policy areas covering media protection and physical security.

Incident Response and Cooperation. Vetted Security Solutions cooperates with customer-initiated CJIS audits, background-check requests, and incident-response activities, and works with customers to maintain documentation needed to support CJIS reviews.

Continuous Improvement. We monitor CJIS Security Policy updates issued by the FBI CJIS Division, FDLE bulletins, and equivalent state-level guidance, and we update our internal practices as the policy evolves.

Affiliates and Third-Party Partners. Vetted Security Solutions is one brand within the Vetted Holdings LLC family of companies. Vetted Holdings affiliates and the independent software, hardware, and platform providers integrated with our solutions maintain their own CJIS compliance practices, certifications, and documentation. Customers should consult those entities’ published statements and contracts for details specific to their products. On request, Vetted Security Solutions can help coordinate CJIS-related documentation between an agency and the applicable affiliated or third-party provider.

Customer Responsibilities. Each agency remains responsible for its own CJIS compliance posture, including adopting and enforcing CJIS-aligned policies, maintaining personnel screening and training, configuring user permissions, managing access to CJI within agency systems, and overseeing all vendors with access to CJI. Vetted Security Solutions provides supporting services and documentation but does not act as a substitute for the agency’s CJIS Systems Officer or local agency CJIS coordinator.

Contact. For CJIS-related documentation requests, contact us through https://vettedsecuritysolutions.com/contact or email info@vettedsecuritysolutions.com.

© 2026 Vetted Security Solutions LLC a Vetted Holdings Company.