23.03.2013 Views

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

NISTIR 7298 Revision 1, Glossary of Key Information Security Terms

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

NIST IR <strong>7298</strong> <strong>Revision</strong> 1, <strong>Glossary</strong> <strong>of</strong> <strong>Key</strong> <strong>Information</strong> <strong>Security</strong> <strong>Terms</strong><br />

COMSEC Material Control System<br />

(CMCS) –<br />

Logistics and accounting system through which COMSEC material<br />

marked "CRYPTO" is distributed, controlled, and safeguarded.<br />

Included are the COMSEC central <strong>of</strong>fices <strong>of</strong> record, crypto logistic<br />

depots, and COMSEC accounts. COMSEC material other than key<br />

may be handled through the CMCS.<br />

SOURCE: CNSSI-4009<br />

COMSEC Modification – See <strong>Information</strong> Systems <strong>Security</strong> Equipment Modification.<br />

SOURCE: CNSSI-4009<br />

COMSEC Module – Removable component that performs COMSEC functions in a<br />

telecommunications equipment or system.<br />

SOURCE: CNSSI-4009<br />

COMSEC Monitoring – Act <strong>of</strong> listening to, copying, or recording transmissions <strong>of</strong> one's own<br />

<strong>of</strong>ficial telecommunications to analyze the degree <strong>of</strong> security.<br />

SOURCE: CNSSI-4009<br />

COMSEC Pr<strong>of</strong>ile – Statement <strong>of</strong> COMSEC measures and materials used to protect a<br />

given operation, system, or organization.<br />

SOURCE: CNSSI-4009<br />

COMSEC Survey – Organized collection <strong>of</strong> COMSEC and communications information<br />

relative to a given operation, system, or organization.<br />

SOURCE: CNSSI-4009<br />

COMSEC System Data – <strong>Information</strong> required by a COMSEC equipment or system to enable it<br />

to properly handle and control key.<br />

SOURCE: CNSSI-4009<br />

COMSEC Training – Teaching <strong>of</strong> skills relating to COMSEC accounting, use <strong>of</strong> COMSEC<br />

aids, or installation, use, maintenance, and repair <strong>of</strong> COMSEC<br />

equipment.<br />

SOURCE: CNSSI-4009<br />

Concept <strong>of</strong> Operations (CONOP) – See <strong>Security</strong> Concept <strong>of</strong> Operations.<br />

SOURCE: CNSSI-4009<br />

Confidentiality –<br />

Preserving authorized restrictions on information access and<br />

disclosure, including means for protecting personal privacy and<br />

proprietary information.<br />

SOURCE: SP 800-53; SP 800-53A; SP 800-18; SP 800-27; SP 800-<br />

60; SP 800-37; FIPS 200; FIPS 199; 44 U.S.C., Sec. 3542<br />

Pg 44

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!