Term:Incident

From FISMApedia
Jump to: navigation, search

CNSSI 4009

Incident - (IS) Assessed occurrence having actual or potentially adverse effects on an IS. ( COMSEC) Occurrence that potentially jeopardizes the security of COMSEC material or the secure electrical transmission of national security information.

GAO-09-232G

Incident - Assessed occurrence having actual or potentially adverse effects on an IS.

NIST FIPS 200

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies.

NIST IR 7298

Incident - A violation or imminent threat of violation of computer security policies, acceptable use policies, or standard computer security practices. SOURCE: SP 800-61

NIST IR 7298

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies. SOURCE: FIPS 200

NIST SP 800-39 Draft 2

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies. [FIPS 200]

NIST SP 800-53A

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies. [FIPS 200]

NIST SP 800-53r1

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies.

NIST SP 800-53r2

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies. [FIPS 200]

NIST SP 800-53r3

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies. [FIPS 200]

NIST SP 800-61r1

Incident - A violation or imminent threat of violation of computer security policies, acceptable use policies, or standard security practices.

NIST SP 800-61

Incident - A violation or imminent threat of violation of computer security policies, acceptable use policies, or standard computer security practices.

NIST SP 800-82 Final Draft

Incident - An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of an information system or the information the system processes, stores, or transmits or that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies. Incidents may be intentional or unintentional. [FIPS PUB 200, Minimum Security Requirements for Federal Information and Information System, March 2006.]

NIST SP 800-94

Incident - A violation or imminent threat of violation of computer security policies, acceptable use policies, or standard security practices.