Terms starting with “S”
610 election security terms starting with S, with direct links to full definitions and source-backed context.
Security Authorization
VerifiedSee Authorization. Security Authorization - (To Operate) See Authorization (to operate). (CNSSI-4009) (NISTIR)
Security Authorization (to Operate)
VerifiedSee authorization to operate (ATO). Source: NIST SP 800-37 Rev 1
Security Authorization Boundary
VerifiedSee Authorization Boundary. (NISTIR)
Security Authorization Package
VerifiedDocuments the results of the security control assessment and provides the authorizing official with essential information needed to make a risk-based decision on whether to authori...
Security Automation
VerifiedThe use of information technology in place of manual processes for cyber incident response and management.
Security Automation Domain
VerifiedAn information security area that includes a grouping of tools, technologies, and data. (SP 800-137) (NISTIR)
Security Banner
1. A persistent visible window on a computer monitor that displays the highest level of data accessible during the current session. 2. The opening screen that informs users of the...
Security Categorization
VerifiedThe process of determining the security category for information or an information system. Security categorization methodologies are described in CNSS Instruction 1253 for national...
Security Category
VerifiedThe characterization of information or an information system based on an assessment of the potential impact that a loss of confidentiality, integrity, or availability of such infor...
Security Code
VerifiedFor security purposes, each touchscreen must "along with each associated activating and DRE recording device and component, employ a unique, electronically implanted election speci...
Security Concept Of Operations
Verified(Security CONOP) A security-focused description of an information system, its operational policies, classes of users, interactions between the system and its users, and the system'...
Security Concept Of Operations (security Conop)
VerifiedA security-focused description of an information system, its operational policies, classes of users, interactions between the system and its users, and the system's contribution to...
Security Content Automation Protocol (scap)
A suite of specifications that standardize the format and nomenclature by which software flaw and security configuration information is communicated, both to machines and humans. S...
Security Control Assessment
VerifiedThe testing and/or evaluation of the management, operational, and technical security controls in an information system to determine the extent to which the controls are implemented...
Security Control Assessor
VerifiedThe individual, group, or organization responsible for conducting a security control assessment. (SP 800-37; SP 800-53A) (NISTIR)
Security Control Assessor (sca)
VerifiedThe individual, group, or organization responsible for conducting a security control assessment. Source: NIST SP 800-37 Rev 1
Security Control Baseline
VerifiedThe set of minimum security controls defined for a low-impact, moderate- impact, or high-impact information system. Source: FIPS PUB 200
Security Control Effectiveness
VerifiedThe measure of correctness of implementation (i.e., how consistently the control implementation complies with the security plan) and how well the security plan meets organizational...
Security Control Enhancements
VerifiedStatements of security capability to 1) build in additional, but related, functionality to a basic control; and/or 2) increase the strength of a basic control. Source: NIST SP 800-...
Security Control Inheritance
VerifiedA situation in which an information system or application receives protection from security controls (or portions of security controls) that are developed, implemented, and assesse...
Security Control Provider
VerifiedAn organizational official responsible for the development, implementation, assessment, and monitoring of common controls (i.e., security controls inherited by information systems)...
Security Controls
VerifiedManagement, operational, and technical controls (i.e., safeguards or countermeasures) prescribed for an information system to protect the confidentiality, integrity, and availabili...
Security Controls Baseline
VerifiedThe set of minimum security controls defined for a low-impact, moderate-impact, or high-impact information system. (CNSSI-4009) (NISTIR)
Security Designation
VerifiedA "printed designation placed on a ballot to identify to the computer program the offices and propositions for which votes may be cast and to indicate the manner in which votes cas...