accountability
Term · Cybersecurity · MLC-T-CYB-000051
1. Property that ensures that the actions of an entity may be traced uniquely to the entity.
2. A privacy principle (FIPP) that refers to an organization's requirements to demonstrate their implementation of the FIPPs and applicable privacy requirements.
3. The security objective that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after- action recovery and legal action.
4. The principle that an individual is entrusted to safeguard and control equipment, keying material, and information and is answerable to proper authority for the loss or misuse of that equipment or information.
5. The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.
6. A property that ensures that the actions of an entity may be traced uniquely to that entity.
7. The security objective that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.
8. 2. The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.
9. 1. Assigning key management responsibilities to individuals and holding them accountable for these activities. 2. A property that ensures that the actions of an entity may be traced uniquely to that entity.
10. The property that ensures that the actions of an entity may be traced uniquely to the entity.
11. The property of being able to trace activities on a system to individuals who may then be held responsible for their actions.
| Identifier | MLC-T-CYB-000051 |
|---|---|
| Field | Cybersecurity |
| References | CNSSI 4009-2022 from ISO/IEC 7498-2:1989; CNSSI 4009-2022 from OMB Circular A-130 (2016) (adapted); CNSSI 4009-2022 from NIST SP 800-33 (adapted); CNSSI 4009-2015 from NSA/CSS Manual Number 3-16 (COMSEC); CNSSI 4009-2022 from CNSSI 4005; NIST SP 800-12 Rev. 1 from NIST SP 800-27 Rev. A; NIST SP 800-27 Rev. A [Withdrawn]; NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 2 [Superseded]; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-57 Part 1 Rev. 3 [Superseded]; NIST SP 800-33 [Withdrawn]; CNSSI 4009-2015 from NIST SP 800-27 Rev. A; NIST SP 800-57 Part 1 Rev. 5; NISTIR 5153 from ISO DIS 10181-2; NISTIR 4734; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-000051",
"term": "accountability",
"field": "Cybersecurity",
"definition": "1. Property that ensures that the actions of an entity may be traced uniquely to the entity.\n\n2. A privacy principle (FIPP) that refers to an organization's requirements to demonstrate their implementation of the FIPPs and applicable privacy requirements.\n\n3. The security objective that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after- action recovery and legal action.\n\n4. The principle that an individual is entrusted to safeguard and control equipment, keying material, and information and is answerable to proper authority for the loss or misuse of that equipment or information.\n\n5. The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.\n\n6. A property that ensures that the actions of an entity may be traced uniquely to that entity.\n\n7. The security objective that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.\n\n8. 2. The security goal that generates the requirement for actions of an entity to be traced uniquely to that entity. This supports non-repudiation, deterrence, fault isolation, intrusion detection and prevention, and after-action recovery and legal action.\n\n9. 1. Assigning key management responsibilities to individuals and holding them accountable for these activities. 2. A property that ensures that the actions of an entity may be traced uniquely to that entity.\n\n10. The property that ensures that the actions of an entity may be traced uniquely to the entity.\n\n11. The property of being able to trace activities on a system to individuals who may then be held responsible for their actions.",
"references": [
"CNSSI 4009-2022 from ISO/IEC 7498-2:1989",
"CNSSI 4009-2022 from OMB Circular A-130 (2016) (adapted)",
"CNSSI 4009-2022 from NIST SP 800-33 (adapted)",
"CNSSI 4009-2015 from NSA/CSS Manual Number 3-16 (COMSEC); CNSSI 4009-2022 from CNSSI 4005",
"NIST SP 800-12 Rev. 1 from NIST SP 800-27 Rev. A; NIST SP 800-27 Rev. A [Withdrawn]",
"NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 2 [Superseded]; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-57 Part 1 Rev. 3 [Superseded]",
"NIST SP 800-33 [Withdrawn]",
"CNSSI 4009-2015 from NIST SP 800-27 Rev. A",
"NIST SP 800-57 Part 1 Rev. 5",
"NISTIR 5153 from ISO DIS 10181-2",
"NISTIR 4734",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/accountability/"
}
Record 51 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.