Term:Authorize Processing

From FISMApedia
Revision as of 00:38, 27 October 2009 by DanPhilpott (talk) (1 revision)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

NIST IR 7298

Authorize Processing - The official management decision given by a [[Term:senior agency official | senior agency official]] to authorize operation of an information system and to explicitly accept the risk to agency operations (including mission, functions, image, or reputation), agency assets, or individuals, based on the implementation of an agreed-upon set of security controls. SOURCE: SP 800-53

NIST IR 7328 Draft

Authorize Processing - See Accreditation.

NIST SP 800-18r1

Authorize Processing - See Accreditation.

NIST SP 800-26

Authorize Processing - Authorize Processing occurs when management authorizes in writing a system based on an assessment of management, operational, and technical controls. By authorizing processing in a system the management official accepts the risks associated with it. See also Accreditation, Certification, and Designated Approving Authority.

NIST SP 800-37

Authorize Processing - See Accreditation.

NIST SP 800-39 Draft 2

Authorize Processing - See Accreditation.

NIST SP 800-53A

Authorize Processing - See Accreditation.

NIST SP 800-53r1

Authorize Processing - The official management decision given by a [[Term:senior agency official | senior agency official]] to authorize operation of an information system and to explicitly accept the risk to agency operations (including mission, functions, image, or reputation), agency assets, or individuals, based on the implementation of an agreed-upon set of security controls.

NIST SP 800-53r2

Authorize Processing - See Accreditation.

NIST SP 800-53r3

Authorize Processing - See Authorization.