authorize processing
Term · Cybersecurity · MLC-T-CYB-000349
1. The official management decision of the Designated Authorizing Official to permit operation of an issuer after determining that the issuer’s reliability has satisfactorily been established through appropriate assessment processes.
2. The right or a permission that is granted to a system entity to access a system resource.
3. The official management decision given by a senior organizational official to authorize the operation of an information system and to explicitly accept the risk to organizational operations and assets, individuals, other organizations, and the Nation, based on the implementation of an agreed-upon set of security controls.
4. Access privileges granted to a user, program, or process or the act of granting those privileges. Formerly known as "accreditation."
5. The official management decision given by a senior agency official to authorize operation of an information system and to explicitly accept the risk to agency operations (including mission, functions, image, or reputation), agency assets, or individuals, based on the implementation of an agreed-upon set of security controls.
6. Access privileges granted to a user, program, or process or the act of granting those privileges.
7. The official management decision given by a senior official to authorize operation of a system or the common controls inherited by designated organizations systems and to explicitly accept the risk to organizational operations (including mission, functions, image, and reputation), organizational assets, individuals, other organizations, and the Nation based on the implementation of an agreed-upon set of security and privacy controls. Also known as authorization to operate.
8. The process that takes place after authentication is complete to determine which resources/services are available to a WiMAX device.
9. The process of verifying that a requested action or service is approved for a specific entity.
10. also known as authorize processing (OMB Circular A-130, Appendix III),and approval to operate. Accreditation (or authorization to process information) is granted by a management official and provides an important quality control. By accrediting a system or application, a manager accepts the associated risk. Accreditation (authorization) must be based on a review of controls. (See Certification.)
11. See Accreditation.
12. The granting or denying of access rights to a user, program, or process.
13. Formal declaration by a Designated Approving Authority that an Information System is approved to operate in a particular security mode using a prescribed set of safeguards at an acceptable level of risk.
14. Access privileges that are granted to an entity; conveying an “official” sanction to perform a security function or activity.
15. Access privileges granted to an entity; conveys an “official” sanction to perform a security function or activity.
16. Access privileges granted to an entity; conveys an “official” sanction to perform a cryptographic function or other sensitive activity.
17. See authorization.
18. Access privileges that are granted to an entity that convey an “official” sanction to perform a security function or activity.
19. The process of initially establishing access privileges of an individual and subsequently verifying the acceptability of a request for access.
| Identifier | MLC-T-CYB-000349 |
|---|---|
| Field | Cybersecurity |
| Synonyms | Accreditation; authorization |
| References | NIST SP 800-79-2; NIST SP 800-82r3 from RFC 4949 (adapted); NIST SP 800-82 Rev. 2 [Superseded] from RFC 4949; NIST SP 1800-27C from NIST SP 800-82 Rev. 2, NIST SP 800-82r3; NIST SP 1800-10B from NIST SP 800-82 Rev. 2, NIST SP 800-82r3; NIST SP 800-175A; CNSSI 4009-2022 from NIST SP 800-63-3 (adapted); NIST SP 800-18 Rev. 1 [Superseded] from NIST SP 800-37; NIST SP 800-60 Vol. 1 Rev. 1 from FIPS 200, NIST SP 800-37; NIST SP 800-82 Rev. 2 [Superseded] from NIST SP 800-53; CNSSI 4009-2015; NIST SP 800-53 Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022; NIST SP 800-160 Vol. 2 Rev. 1 from CNSSI 4009-2015, CNSSI 4009-2022; NIST SP 800-53A Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022; NIST SP 800-12 Rev. 1; NIST SP 800-127 [Withdrawn]; NIST SP 800-152; NIST SP 800-57 Part 2 Rev.1; NIST SP 800-16; NIST SP 800-18 Rev. 1 [Superseded]; NIST SP 800-33 [Withdrawn]; NISTIR 7316; NIST SP 800-27 Rev. A [Withdrawn]; NIST SP 800-32 [Withdrawn]; NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 1 Rev. 3 [Superseded]; NIST SP 800-57 Part 2 [Superseded]; NIST SP 800-57 Part 2 Rev.1; CNSSI 4009-2015 from NIST SP 800-53 Rev. 4, NIST SP 800-37 Rev. 1; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-53 Rev. 4 [Superseded]; NIST SP 800-57 Part 1 Rev. 5; NISTIR 4734; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-000349",
"term": "authorize processing",
"field": "Cybersecurity",
"definition": "1. The official management decision of the Designated Authorizing Official to permit operation of an issuer after determining that the issuer’s reliability has satisfactorily been established through appropriate assessment processes.\n\n2. The right or a permission that is granted to a system entity to access a system resource.\n\n3. The official management decision given by a senior organizational official to authorize the operation of an information system and to explicitly accept the risk to organizational operations and assets, individuals, other organizations, and the Nation, based on the implementation of an agreed-upon set of security controls.\n\n4. Access privileges granted to a user, program, or process or the act of granting those privileges. Formerly known as \"accreditation.\"\n\n5. The official management decision given by a senior agency official to authorize operation of an information system and to explicitly accept the risk to agency operations (including mission, functions, image, or reputation), agency assets, or individuals, based on the implementation of an agreed-upon set of security controls.\n\n6. Access privileges granted to a user, program, or process or the act of granting those privileges.\n\n7. The official management decision given by a senior official to authorize operation of a system or the common controls inherited by designated organizations systems and to explicitly accept the risk to organizational operations (including mission, functions, image, and reputation), organizational assets, individuals, other organizations, and the Nation based on the implementation of an agreed-upon set of security and privacy controls. Also known as authorization to operate.\n\n8. The process that takes place after authentication is complete to determine which resources/services are available to a WiMAX device.\n\n9. The process of verifying that a requested action or service is approved for a specific entity.\n\n10. also known as authorize processing (OMB Circular A-130, Appendix III),and approval to operate. Accreditation (or authorization to process information) is granted by a management official and provides an important quality control. By accrediting a system or application, a manager accepts the associated risk. Accreditation (authorization) must be based on a review of controls. (See Certification.)\n\n11. See Accreditation.\n\n12. The granting or denying of access rights to a user, program, or process.\n\n13. Formal declaration by a Designated Approving Authority that an Information System is approved to operate in a particular security mode using a prescribed set of safeguards at an acceptable level of risk.\n\n14. Access privileges that are granted to an entity; conveying an “official” sanction to perform a security function or activity.\n\n15. Access privileges granted to an entity; conveys an “official” sanction to perform a security function or activity.\n\n16. Access privileges granted to an entity; conveys an “official” sanction to perform a cryptographic function or other sensitive activity.\n\n17. See authorization.\n\n18. Access privileges that are granted to an entity that convey an “official” sanction to perform a security function or activity.\n\n19. The process of initially establishing access privileges of an individual and subsequently verifying the acceptability of a request for access.",
"synonyms": [
"Accreditation",
"authorization"
],
"references": [
"NIST SP 800-79-2",
"NIST SP 800-82r3 from RFC 4949 (adapted); NIST SP 800-82 Rev. 2 [Superseded] from RFC 4949; NIST SP 1800-27C from NIST SP 800-82 Rev. 2, NIST SP 800-82r3; NIST SP 1800-10B from NIST SP 800-82 Rev. 2, NIST SP 800-82r3",
"NIST SP 800-175A",
"CNSSI 4009-2022 from NIST SP 800-63-3 (adapted)",
"NIST SP 800-18 Rev. 1 [Superseded] from NIST SP 800-37; NIST SP 800-60 Vol. 1 Rev. 1 from FIPS 200, NIST SP 800-37; NIST SP 800-82 Rev. 2 [Superseded] from NIST SP 800-53",
"CNSSI 4009-2015; NIST SP 800-53 Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022; NIST SP 800-160 Vol. 2 Rev. 1 from CNSSI 4009-2015, CNSSI 4009-2022; NIST SP 800-53A Rev. 5 from CNSSI 4009-2015, CNSSI 4009-2022",
"NIST SP 800-12 Rev. 1",
"NIST SP 800-127 [Withdrawn]",
"NIST SP 800-152; NIST SP 800-57 Part 2 Rev.1",
"NIST SP 800-16",
"NIST SP 800-18 Rev. 1 [Superseded]",
"NIST SP 800-33 [Withdrawn]; NISTIR 7316; NIST SP 800-27 Rev. A [Withdrawn]",
"NIST SP 800-32 [Withdrawn]",
"NIST SP 800-57 Part 1 Rev. 4 [Superseded]; NIST SP 800-57 Part 1 Rev. 3 [Superseded]",
"NIST SP 800-57 Part 2 [Superseded]",
"NIST SP 800-57 Part 2 Rev.1",
"CNSSI 4009-2015 from NIST SP 800-53 Rev. 4, NIST SP 800-37 Rev. 1; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-53 Rev. 4 [Superseded]",
"NIST SP 800-57 Part 1 Rev. 5",
"NISTIR 4734",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/authorize-processing/"
}
Record 349 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.