DA Form 7789 PDF | Army Privileged Access Agreement (PAA)

DA Form 7789 PDF | Army Privileged Access Agreement (PAA) – DA Form 7789, officially titled Privileged Access Agreement (PAA) and Acknowledgment of Responsibilities, is a critical U.S. Army document for personnel granted elevated or administrative-level access to Army information systems and networks. This form ensures that users with privileged accounts understand and agree to heightened cybersecurity responsibilities before gaining access.

For U.S. Army soldiers, civilians, contractors, and other authorized personnel in the United States, completing this agreement is a mandatory step in the cybersecurity compliance process under Army Regulation (AR) 25-2.

Purpose of the Privileged Access Agreement (PAA) on DA Form 7789

The primary purpose of DA Form 7789 is to document that privileged users acknowledge their special duties related to protecting Army networks, data, and systems. Privileged access—such as root, administrator, or super-user rights—carries greater risk if misused. The PAA formalizes the user’s commitment to follow strict security protocols, least-privilege principles, and reporting requirements.

It supports the Army’s Risk Management Framework (RMF) controls (including AC-2, AC-6, and others) and aligns with Department of Defense directives on cybersecurity workforce management (DoDI 8140.01 and successors). The form helps prevent unauthorized actions, insider threats, and compliance violations on both NIPRNet and SIPRNet.

Who Needs to Complete DA Form 7789?

DA Form 7789 is required for any individual requesting or maintaining privileged-level access to Army IT systems. This typically includes:

  • System administrators
  • Network engineers
  • Cybersecurity personnel (IAT/IAM roles)
  • Developers or technicians with elevated privileges
  • Information System Security Managers/Officers (ISSM/ISSO) approvers

It is not needed for standard user accounts (those use DD Form 2875, the System Authorization Access Request or SAAR). Privileged users must sign the PAA (and have it approved by their ISSM/ISSO) prior to account activation. The agreement is reviewed periodically to ensure continued need based on mission requirements, position, and least-privilege principles.

Key Responsibilities Acknowledged in DA Form 7789

By signing DA Form 7789, users explicitly acknowledge responsibilities such as:

  • Complying with AR 25-2 Army Cybersecurity policies and all applicable DoD, CNSS, and Army directives
  • Using privileged access only for authorized purposes and never for personal gain
  • Maintaining the principle of least privilege and separation of duties
  • Protecting sensitive or privileged information and never disclosing it improperly
  • Reporting security incidents, anomalies, or suspected compromises immediately
  • Completing required cybersecurity training and certifications
  • Consenting to monitoring of their activities on Army systems
  • Understanding potential administrative, UCMJ, or legal consequences for violations

The form often includes a Certificate of Nondisclosure section and requires digital or wet signatures from both the user and the approving authority.

How to Complete and Submit DA Form 7789? (Traditional Process)

  1. Download the latest fillable PDF from the official Army Publishing Directorate.
  2. Fill in personal details, organization, specific systems/enclaves requiring privileged access, and justification.
  3. Review all responsibility statements carefully.
  4. Sign and obtain ISSM/ISSO approval.
  5. Historically, upload the signed form to your ATCTS profile along with DD Form 2875, training certificates, and appointment letters.

Important 2026 Update – The form is no longer the primary mechanism for most access requests.

Major Process Change: ATCTS Sunset and Transition to Account Validation System (AVS)

Effective May 1, 2025, the Army Training and Certification Tracking System (ATCTS) was retired. The Army now uses the Account Validation System (AVS)—a web-based platform integrated with the Army Enterprise Service Management Platform (AESMP) and E-ICAM.

PDF versions of DA Form 7789 (and DD Form 2875) are no longer acceptable for new or renewed access to NIPRNet or SIPRNet systems. Instead:

  • Log into the Army E-ICAM portal (iga.army.mil) or AESMP.
  • Submit a web form for the equivalent of the PAA (Category Two – elevated/privileged accounts).
  • The system automates routing, approvals, and validation.

This digital workflow replaces manual routing and paper forms for faster, more secure processing.

Legacy or specific command requirements may still reference the PDF form—always check with your local G6, ISSO, or cybersecurity office for current guidance.

Official Download: DA Form 7789 PDF

You can download the current fillable version of DA Form 7789 directly from the official U.S. Army source here:
Download DA Form 7789 PDF

This link comes straight from armypubs.army.mil and provides the most up-to-date official version.

Frequently Asked Questions (FAQs) about DA Form 7789

Q: Is DA Form 7789 still required in 2026?
A: Yes, the responsibilities it covers remain mandatory. However, the delivery method has shifted to digital web forms in AVS for most Army network access requests.

Q: How often must the PAA be reviewed?
A: Quarterly reviews were standard under ATCTS; the new AVS process maintains ongoing validation of privileged access.

Q: Can contractors use DA Form 7789?
A: Yes, when sponsored by an Army organization and requiring privileged access.

Q: Where do I get help filling out the form or AVS request?
A: Contact your unit Information System Security Officer (ISSO), G6 office, or the NETCOM/AVS support team.

Why Proper Completion of DA Form 7789 Matters for Army Personnel?

Privileged access is a position of trust. Completing the PAA demonstrates your commitment to Army cybersecurity standards, protects national security information, and helps maintain the integrity of DoDIN-Army networks. Whether using the legacy PDF or the new AVS web process, understanding and honoring these responsibilities is essential for every U.S. Army privileged user.

For the latest official guidance, refer to AR 25-2 Army Cybersecurity and current NETCOM/AESMP announcements. Always verify requirements with your chain of command or cybersecurity personnel before requesting access.