Term:Information Security

From FISMApedia
Revision as of 00:47, 27 October 2009 by DanPhilpott (talk) (1 revision)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

DoD 5200.1-R

Information Security - The system of policies, procedures, and requirements established under the authority of E.O. 12958 ( reference (e)) to protect information that, if subjected to unauthorized disclosure, could reasonably be expected to cause damage to the national security. AP2.1.37.

DoD 5220.22-M

Information Security - The result of any system of administrative policies and procedures for identifying, controlling, and protecting from unauthorized disclosure, information the protection of which is authorized by executive order.

DoD 8580.02-R

Information Security - For the Purpose of this Regulation, the system of policies, procedures, and requirements established to protect unclassified information that may be withheld from release to the public under the provisions of policy or statute and those established under the authority of Executive Order 12958 ( Reference (h)) to protect information that, if subjected to unauthorized disclosure, could reasonably be expected to cause damage to national security. DL1.31.

DSS Glossary

Information Security - Result of any system of policies and procedures for identifying, controlling, and protecting from unauthorized disclosure information that executive order or statute protects.

FAR Subpart 2.1

Information Security - "Information security" means protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide-

(1) Integrity, which means guarding against improper information modification or destruction, and includes ensuring information nonrepudiation and authenticity;
(2) Confidentiality, which means preserving authorized restrictions on access and disclosure, including means for protecting personal privacy and proprietary information; and
(3) Availability, which means ensuring timely and reliable access to, and use of, information.

GAO-09-232G

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability.

M-09-29

Information Security - Protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide: (A) integrity, which means guarding against improper information modification or destruction, and includes ensuring information nonrepudiation and authenticity; (B) confidentiality, which means preserving authorized restrictions on access and disclosure, including means for protecting personal privacy and proprietary information; and (C) availability, which means ensuring timely and reliable access to and use of information. (defined by FISMA, section 3542(b)(1)(A-C))

NIST FIPS 199

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., SEC. 3542]

NIST FIPS 200

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., SEC. 3542]

NIST IR 7298

Information Security - Protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide-

1) integrity, which means guarding against improper information modification or destruction, and includes ensuring information nonrepudiation and authenticity;
2) confidentiality, which means preserving authorized restrictions on access and disclosure, including means for protecting personal privacy and proprietary information; and
3) availability, which means ensuring timely and reliable access to and use of information. SOURCE: SP 800-66; 44 U.S.C., Sec 3541

NIST IR 7298

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. SOURCE: SP 800-53; FIPS 200; FIPS 199; 44 U.S.C., Sec. 3542

NIST IR 7328 Draft

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-18r1

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-37r1 Draft

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-37

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-39 Draft 2

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-53A

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-53r1

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability.

NIST SP 800-53r2

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-53r3

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-59

Information Security - The term 'information security' means protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide integrity, confidentiality, and availability. [44 USC 3542 (b)(1)]

NIST SP 800-60r1V1

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-60r1V2

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [44 U.S.C., Sec. 3542]

NIST SP 800-64r2

Information Security - The protection of information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. SOURCE: 44 U.S.C., Sec. 3542

NIST SP 800-66

Information Security - Protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide-

(A) integrity, which means guarding against improper information modification or destruction, and includes ensuring information nonrepudiation and authenticity;
(B) confidentiality, which means preserving authorized restrictions on access and disclosure, including means for protecting personal privacy and proprietary information; and
(C) availability, which means ensuring timely and reliable access to and use of information. [44 U.S.C., Sec. 3542]