Term:Vulnerability Assessment

From FISMApedia
Revision as of 01:30, 27 October 2009 by DanPhilpott (talk) (1 revision)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

CNSSI 4009

Vulnerability Assessment - Formal description and evaluation of vulnerabilities of an IS.

DoDI 8551.01

Vulnerability Assessment - The systematic examination of an information system or product to determine the adequacy of security measures, identify security deficiencies, provide data from which to predict the effectiveness of proposed security measures, and confirm the adequacy of such measures after implementation ( reference (f)). E2.1.24.

DSS Glossary

Vulnerability Assessment - The results of vulnerability analysis expressed as a degree of probable exploitation by an adversary.

GAO-09-232G

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system.

NIST IR 7298

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system. SOURCE: SP 800-53; CNSSI-4009

NIST SP 800-18r1

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system. [CNSS Inst. 4009]

NIST SP 800-37

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system. [CNSS Inst. 4009]

NIST SP 800-53A

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system. [CNSS Inst. 4009]

NIST SP 800-53r1

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system.

NIST SP 800-53r2

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system. [CNSS Inst. 4009]

NIST SP 800-53r3

Vulnerability Assessment - Formal description and evaluation of the vulnerabilities in an information system. [CNSSI 4009]

NIST SP 800-54

adj-RIB-In - Routes learned from inbound update messages from BGP peers.

NSTISSI 1000

Vulnerability Assessment - Systematic examination of an IS or product to determine the adequacy of security measures, identify security deficiencies, provide data from which to predict the effectiveness of proposed security measures, and confirm the adequacy of such measures after implementation.