23.03.2013 Views

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

NIST IR <strong>7298</strong> <strong>Revision</strong> 1, <strong>Glossary</strong> <strong>of</strong> <strong>Key</strong> <strong>Information</strong> <strong>Security</strong> <strong>Terms</strong><br />

Chief <strong>Information</strong> Officer (CIO) –<br />

Chief <strong>Information</strong> <strong>Security</strong> Officer –<br />

(CISO)<br />

Agency <strong>of</strong>ficial responsible for:<br />

1) Providing advice and other assistance to the head <strong>of</strong> the executive<br />

agency and other senior management personnel <strong>of</strong> the agency to<br />

ensure that information technology is acquired and information<br />

resources are managed in a manner that is consistent with laws,<br />

Executive Orders, directives, policies, regulations, and priorities<br />

established by the head <strong>of</strong> the agency;<br />

2) Developing, maintaining, and facilitating the implementation <strong>of</strong> a<br />

sound and integrated information technology architecture for the<br />

agency; and<br />

3) Promoting the effective and efficient design and operation <strong>of</strong> all<br />

major information resources management processes for the<br />

agency, including improvements to work processes <strong>of</strong> the agency.<br />

SOURCE: FIPS 200; Public Law 104-106, Sec. 5125(b)<br />

Agency <strong>of</strong>ficial responsible for: 1) providing advice and other<br />

assistance to the head <strong>of</strong> the executive agency and other senior<br />

management personnel <strong>of</strong> the agency to ensure that information<br />

systems are acquired and information resources are managed in a<br />

manner that is consistent with laws, Executive Orders, directives,<br />

policies, regulations, and priorities established by the head <strong>of</strong> the<br />

agency; 2) developing, maintaining, and facilitating the<br />

implementation <strong>of</strong> a sound and integrated information system<br />

architecture for the agency; and 3) promoting the effective and<br />

efficient design and operation <strong>of</strong> all major information resources<br />

management processes for the agency, including improvements to<br />

work processes <strong>of</strong> the agency.<br />

Note: Organizations subordinate to federal agencies may use the<br />

term Chief <strong>Information</strong> Officer to denote individuals filling positions<br />

with similar security responsibilities to agency-level Chief<br />

<strong>Information</strong> Officers.<br />

SOURCE: CNSSI-4009; SP 800-53<br />

See Senior Agency <strong>Information</strong> <strong>Security</strong> Officer.<br />

Cipher – Series <strong>of</strong> transformations that converts plaintext to ciphertext using<br />

the Cipher <strong>Key</strong>.<br />

SOURCE: FIPS 197<br />

Any cryptographic system in which arbitrary symbols or groups <strong>of</strong><br />

symbols, represent units <strong>of</strong> plain text, or in which units <strong>of</strong> plain text<br />

are rearranged, or both.<br />

SOURCE: CNSSI-4009<br />

Pg 31

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!