Cybersecurity terminology · MLC-0102
Cybersecurity terms: I (292)
- i1. A counter taking integer values in the interval [1, 2^r-1] that is encoded as a bit string of length r...
- I1, …, I64Bits of the Input Block
- I2BSInteger to Byte String conversion routine.
- I&AThe process of establishing the identity of an entity interacting with a system.
- IA1. Measures that protect and defend information and information systems by ensuring their availability...
- IaaS, see Infrastructure as a Service (IaaS)
- IACThe process of managing and provisioning an organization’s IT infrastructure using machine-readable...
- IALA category that conveys the degree of confidence that the applicant’s claimed identity is their real identity.
- IAM, see Identity and access management
- IAO, see Information Assurance Officer
- IATOInterim Authorization to Operate; issued by a DAO to an issuer who is not satisfactorily performing PIV Card...
- IATT, see interim authorization to test (IATT)
- IBAC, see identity-based access control
- iBGPA BGP operation communicating routing information within an AS.
- IC1. The term 'intelligence community' refers to the following agencies or organizations: (1) The Central...
- ICAM, see Identity, Credential, and Access Management (ICAM)
- ICB1. Initial Counter Block
- ICCIDa unique and immutable identifier maintained within the SIM.
- ICS1. An information system used to control industrial processes such as manufacturing, product handling...
- ICTEncompasses the capture, storage, retrieval, processing, display, representation, presentation, organization...
- ICT Supply Chain1. Linked set of resources and processes between acquirers, integrators, and suppliers that begins with the...
- ICT Supply Chain RiskRisks that arise from the loss of confidentiality, integrity, or availability of information or information...
- ICT Supply Chain Risk ManagementThe process of identifying, assessing, and mitigating the risks associated with the global and distributed...
- ICT/OT-related service providersAny organization or individual providing services which may include authorized access to an ICT or OT system.
- ICV1. See checksum.
- ICV1The 64-bit default ICV for KW:0xA6A6A6A6A6A6A6A6.
- ICV2The 32-bit default ICV for KWP:0xA65959A6.
- ICV3The 32-bit default ICV for TKW:0xA6A6A6A6.
- ID1. The process of discovering the identity (i.e., origin or initial history) of a person or item from the...
- IdAM, see Identity and access management
- Ideal Random Bitstring1. See Ideal Random Sequence.
- ideal randomness sourceThe source of an ideal random sequence of bits. Each bit of an ideal random sequence is unpredictable and...
- iDENa proprietary mobile communications technology developed by Motorola that combine the capabilities of a...
- identifiable personone who can be identified, directly or indirectly, in particular by reference to an identification number or...
- identification1. The process of discovering the identity (i.e., origin or initial history) of a person or item from the...
- Identification and AuthenticationThe process of establishing the identity of an entity interacting with a system.
- identified informationinformation that explicitly identifies an individual
- identifier1. Unique data used to represent a person’s identity and associated attributes. A name or a card number are...
- Identifier CPE NameA bound representation of a CPE WFN that uniquely identifies a single product class. Also referred to as an...
- Identifier LookupThe process of determining if a single identifier name exists in a CPE dictionary.
- IdentifyThe bit string denoting the identifier associated with an entity.
- identify (CSF function)1. The bit string denoting the identifier associated with an entity.
- Identifying Information1. Information that can be used to distinguish or trace an individual's identity, either alone or when...
- Identify-P (Function)Develop the organizational understanding to manage privacy risk for individuals arising from data processing.
- identity1. Unique group element 0 for which x+0=x for each group element x, relative to the binary group operator +.
- Identity and access managementBroadly refers to the administration of individual identities within a system, such as a company, a network...
- identity APIA protected API that is accessed by an RP to retrieve the attributes of a specific subscriber.
- Identity Assurance Level (IAL)1. A category that conveys the degree of confidence that a person’s claimed identity is their real identity...
- Identity authentication1. The process of providing assurance about the identity of an entity interacting with a system; also see...
- identity certificateA certificate that provides authentication of the identity claimed. Within the National Security System (NSS)...
- Identity, Credential, and Access Management (ICAM)1. Programs, processes, technologies, and personnel used to create trusted digital identity representations...
- Identity EcosystemAn online environment where individuals can choose from a variety of credentials to use in lieu of passwords...
- Identity FederationA group of organizations that agree to follow the rules of a trust framework.
- Identity Fraud and Identity TheftIdentity theft and identity fraud are terms used to refer to all types of crime in which someone wrongfully...
- Identity KeyA private key that is used for authentication in the SSH protocol; grants access to the accounts for which...
- Identity Management System (IDMS)1. One or more systems or applications that manage the identity proofing, registration, and issuance...
- identity proofing1. The process of providing sufficient information (e.g., identity history, credentials, documents) to...
- Identity Provider (IdP)1. The party in a federation transaction that creates an assertion for the subscriber and transmits the...
- identity resolutionThe process of collecting information about an applicant to uniquely distinguish an individual within the...
- Identity Root, see IR
- Identity Service Provider (ISP)1. A trusted entity that issues or registers subscriber authenticators and issues electronic credentials to...
- identity verification1. The process of confirming or denying that a claimed identity is correct by comparing the credentials of a...
- identity-based access controlAccess control based on the identity of the user (typically relayed as a characteristic of the process acting...
- Identity-based authenticationA process that provides assurance of an entity’s identity by means of an authentication mechanism that...
- IDMS, see Identity Management System (IDMS)
- IdP, see Identity Provider (IdP)
- IDP, IDR, IDU, IDVIdentifier bit strings for parties P, R, U, and V, respectively.
- IDSSoftware that looks for suspicious activity and alerts administrators.
- IEA, see information exchange agreement
- IEDAny device incorporating one or more processors with the capability to receive or send data/control from or...
- IETF1. The Internet Engineering Task Force is the premier Internet standards body that develops open Internet...
- IFC1. Integer factorization cryptography
- igamc1. The incomplete gamma function Q(a,x) is defined in Section 5.5.3.
- IID, see Independent and Identically Distributed
- IIoT, see Industrial Internet of Things
- IjThe jth input block.
- IMa facility for exchanging messages in real-time with other people over the Internet and tracking the progress...
- Image1. An exact bit-stream copy of all electronic data on a device, performed in a manner that ensures the...
- ImagingThe process used to obtain a bit by bit copy of data residing on the original electronic media; allows the...
- IMAP1. a method of communication used to read electronic mail stored in a remote server.
- IMEIa unique number programmed into GSM and UMTS mobile phones.
- ImmutableData that can only be written, not modified or deleted.
- impact1. The effect on organizational operations, organizational assets, individuals, other organizations, or the...
- impact level1. The assessed potential impact resulting from a compromise of the confidentiality, integrity, or...
- impact value1. The assessed potential impact resulting from a compromise of the confidentiality, integrity, or...
- implantElectronic device or electronic equipment modification designed to gain unauthorized interception of...
- ImplementationAn implementation of an RBG is a cryptographic device or portion of a cryptographic device that is the...
- Implementation Testing for ValidationTesting by an independent and accredited party to ensure that an implementation of this Recommendation...
- Implementation TierProvides a point of reference on how an organization views privacy risk and whether it has sufficient...
- Implementation Under TestImplementation Under Test
- ImportA process available to end users by which an SCAP source data stream can be loaded into the vendor’s product...
- imputation1. A procedure for entering a value for a specific data item where the response is missing or unusable.
- IMSIa unique number associated with every GSM mobile phone user.
- InBlock of data representing the Input Block n
- inadvertent disclosureType of incident involving accidental exposure of information to an individual not authorized access.
- Incentive Mechanism1. See Incentive Mechanism
- incident1. An occurrence that actually or potentially jeopardizes the confidentiality, integrity, or availability of...
- incident handling1. The remediation or mitigation of violations of security policies and recommended practices.
- incident response1. The remediation or mitigation of violations of security policies and recommended practices.
- incident response plan1. The documentation of a predetermined set of instructions or procedures to detect, respond to, and limit...
- Incomplete Gamma Function1. The incomplete gamma function Q(a,x) is defined in Section 5.5.3.
- Incremental testingTesting a system or device to determine that minor changes have not affected its security and intended...
- incs(X)The output of incrementing the right-most s bits of the bit string X, regarded as the binary representation...
- Inculpatory EvidenceEvidence that tends to increase the likelihood of fault or guilt.
- IndependentTwo random variables X and Y are independent if they do not convey information about each other. Receiving...
- Independent and Identically DistributedA quality of a sequence of random variables for which each element of the sequence has the same probability...
- Independent Qualified Reviewer1. A Reviewer tasked by NIST with making a recommendation to NIST regarding public review or listing of the...
- Independent Regulatory Agency1. The term 'independent regulatory agency' means the Board of Governors of the Federal Reserve System, the...
- independent validation authority (IVA)Entity that reviews the soundness of independent tests and system compliance with all stated security...
- independent verification & validation (IV&V)A comprehensive review, analysis, and testing, (software and/or hardware) performed by an objective third...
- indicator1. A pattern of relevant observable adversary activity in the operational cyber domain.
- Indicator of CompromiseTechnical artifacts or observables that suggest that an attack is imminent or is currently underway or that a...
- indirect identifierinformation that can be used to identify an individual through association with other information
- indirect prompt injectionA type of prompt injection executed through resource control rather than through user-provided input as in a...
- Individual1. A citizen of the United States or an alien lawfully admitted for permanent residence. Agencies may...
- individual accountabilityAbility to associate positively the identity of a user with the time, method, and degree of access to an...
- individual participationA privacy principle (FIPP) that encourages an organization to involve the individual in the process of using...
- Individual Privacy, see IP
- individualsAn assessment object that includes people applying specifications, mechanisms, or activities.
- Industrial Internet of ThingsThe sensors, instruments, machines, and other devices that are networked together and use Internet...
- Industrial SecurityThe portion of internal security that refers to the protection of industrial installations, resources...
- infeasibleInfeasible acknowledges the possibility of data recovery with future, more advanced technology. It simply...
- inference1. Refers to the ability to deduce the identity of a person associated with a set of data through “clues”...
- information1. An instance of an information type.
- information and communications technology (ICT)1. Includes all categories of ubiquitous technology used for the gathering, storing, transmitting...
- information assurance (IA)1. Measures that protect and defend information and information systems by ensuring their availability...
- Information Assurance OfficerSee information systems security officer (ISSO). Note: DoDI 8500.01 has transitioned from the term...
- information domainA three-part concept for information sharing, independent of, and across information systems and security...
- information environmentThe aggregate of individuals, organizations, and systems that collect, process, disseminate, or act on...
- information exchangeAccess to or the transfer of data outside of system authorization boundaries in order to accomplish a mission...
- information exchange agreementA document specifying protection requirements and responsibilities for information being exchanged outside of...
- information flow control1. Procedure to ensure that information transfers within an information system are not made in violation of...
- information itemSeparately identifiable body of information that is produced, stored, and delivered for human use.
- information leakageThe intentional or unintentional release of information to an untrusted environment.
- information life cycleThe stages through which information passes, typically characterized as creation or collection, processing...
- information managementThe planning, budgeting, manipulating, and controlling of information throughout its life cycle.
- Information Management PolicyThe high-level policy of an organization that specifies what information is to be collected or created, and...
- information objectA well-defined piece of information, definition, or specification that requires a name to identify its use in...
- information operations (IO)The integrated employment, during military operations, of information-related capabilities in concert with...
- information owner1. Official with statutory or operational authority for specified information and responsibility for...
- Information Relevant to CybersecurityInformation describing use of, assumptions, risks, vulnerabilities, assessments, and/or mitigations related...
- information resources1. Information and related resources, such as personnel, equipment, funds, and information technology.
- information resources management (IRM)The process of managing information resources to accomplish agency missions and to improve agency...
- information security1. The protection of information and information systems from unauthorized access, use, disclosure...
- information security architecture1. A description of the structure and behavior for an enterprise’s security processes, information security...
- information security continuous monitoring (ISCM)1. Maintaining ongoing awareness of information security, vulnerabilities, and threats to support...
- information security continuous monitoring (ISCM) program1. A program established to collect information in accordance with pre-established metrics, utilizing...
- information security continuous monitoring (ISCM) strategyA strategy that establishes an ISCM program.
- information security officer1. See Senior Agency Information Security Officer.
- information security policy1. Aggregate of directives, regulations, rules, and practices that prescribes how an organization manages...
- information security program plan1. Formal document that provides an overview of the security requirements for an organization-wide...
- information security risk1. The risk to organizational operations (including mission, functions, image, reputation), organizational...
- Information Security TestingThe process of validating the effective implementation of security controls for information systems and...
- Information Sharing and Analysis OrganizationAn ISAO is any entity or collaboration created or employed by public- or private sector organizations, for...
- Information Sharing Architecture, see ISA
- information sharing environment (ISE)The people, projects, systems, and agencies that enable responsible information sharing across the national...
- information steward1. An agency official with statutory or operational authority for specified information and responsibility...
- information system1. Discrete set of information resources organized for the collection, processing, maintenance, use, sharing...
- Information System AdministratorIndividual who implements approved secure baseline configurations, incorporates secure configuration settings...
- information system boundary1. All components of an information system to be authorized for operation by an authorizing official and...
- information system component1. An element of a large system - such as an identity card, issuer, card reader, or identity verification...
- information system component inventoryA descriptive record of components within an information system.
- Information System Contingency Plan (ISCP)1. See Information System Contingency Plan.
- Information System Security EngineerIndividual assigned responsibility for conducting information system security engineering activities.
- Information System Security Engineering1. Process that captures and refines information security requirements and ensures that their integration...
- information system security officer1. Individual with assigned responsibility for maintaining the appropriate operational security posture for...
- information system security plan1. A document that describes how an organization meets or plans to meet the security requirements for a...
- Information System User1. A person, team, or organization that accesses or otherwise uses an OLIR.
- information system-related privacy risksRisks that arise from either 1) a breach (privacy context), or 2) as a result of authorized data processing...
- information system-related security risks1. The level of impact on organizational operations (including mission, functions, image, or reputation)...
- information systems security (INFOSEC)1. The protection of information systems against unauthorized access to or modification of information...
- information systems security (INFOSEC) boundaryA definable perimeter encompassing all the critical functions in an INFOSEC product and separating them from...
- information systems security manager (ISSM)Individual responsible for the CS of a program, organization, system, or enclave.
- information technology product1. A discrete identifiable information or operational technology asset that represents a building block of a...
- information type1. A specific category of information (e.g., privacy, medical, proprietary, financial, investigative...
- information valueA qualitative measure of the importance of the information based upon factors such as the level of robustness...
- informational labelProvides facts about properties or features of a product without any grading or evaluation. Information may...
- Informative Reference Developer1. A person, team, or organization that creates an OLIR and submits it to the National OLIR Program.
- Informative References1. Relationships between elements of two documents that are recorded in a NIST IR 8278A-compliant format and...
- INFOSEC1. The protection of information and information systems from unauthorized access, use, disclosure...
- Infrared, see IR
- Infrastructure as a Service (IaaS)The capability provided to the consumer is to provision processing, storage, networks, and other fundamental...
- infrastructure as codeThe process of managing and provisioning an organization’s IT infrastructure using machine-readable...
- Ingress FilteringFiltering of incoming network traffic.
- Ingress Protection, see IP
- Inherent RiskThe risk to an entity in the absence of any direct or focused actions by management to alter its severity.
- inheritance1. A situation in which an information system or application receives protection from security controls (or...
- Initial AnalysisInternal phase within the NVD where an NVD Analyst begins to review a CVE and adds the appropriate metadata.
- initial security control setThe set of security controls resulting from the combination of a baseline and applicable overlays prior to...
- Initialization Vector (IV)1. A bit string that is used as an initial value in computing the first iteration of the PRF in feedback...
- injection attackAn attack in which an attacker supplies untrusted biometric information or media into a program or process...
- Input BlockA data block that is an input to either the forward cipher function or the inverse cipher function of the...
- input checkingExamination of a potential input to an algorithm for the purpose of determining whether it conforms to...
- insider1. Any person with authorized access to any United States Government resource to include personnel...
- insider threat1. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the...
- insider threat program1. A coordinated collection of capabilities authorized by the Department/Agency (D/A) that is organized to...
- inspectable spaceThree dimensional space surrounding equipment that processes classified and/or sensitive information within...
- Inspection1. Examination of an object of conformity assessment and determination of its conformity with detailed...
- Installation (as used herein)Any of the following actions: - Executing an installer to load software. - Listing Software in the operating...
- Installation (of keying material)The process of making keying material available for establishing and maintaining cryptographic relationships.
- Instant Messaging (IM)1. A facility for exchanging messages in real-time with other people over the Internet and tracking the...
- Instantiation of an RBGAn instantiation of an RBG is a specific, logically independent, initialized RBG. One instantiation is...
- Instruction Set Architecture, see ISA
- Integer Factorization Cryptography1. Integer factorization cryptography
- Integer to Byte String conversion routineInteger to Byte String conversion routine.
- integrated CCI (controlled cryptographic items) componentA CCI component that is designed to be incorporated into an otherwise unclassified communication or...
- integrated circuit, see IC
- Integrated Circuit Card ID (ICCID)The unique serial number assigned to, maintained within, and usually imprinted on the (U)SIM.
- Integrated Circuit Card Identificationa unique and immutable identifier maintained within the SIM.
- Integrated Digital Enhanced Network (iDEN)1. A proprietary mobile communications technology developed by Motorola that combines the capabilities of a...
- Integrator1. An organization that customizes (e.g., combines, adds, optimizes) elements, processes, and systems. The...
- integrity1. Guarding against improper information modification or destruction, and includes ensuring information...
- Integrity authentication1. A physical or cryptographic means of providing assurance that information has not been altered in an...
- integrity check value1. See checksum.
- Integrity Impactmeasures the potential impact to integrity of a successfully exploited misuse vulnerability. Integrity refers...
- Integrity protection1. A physical or cryptographic means of providing assurance that information has not been altered in an...
- Integrity verificationObtaining assurance that information has not been altered in an unauthorized manner since it was created...
- integrity violationIn the AML context, an AI system being forced to misperform against its intended objectives, producing...
- intellectual propertyRefers broadly to the creations of the human mind. IP rights protect the interests of innovators and creators...
- intelligence1. In intelligence collection, a phrase that indicates that in the satisfaction of intelligence requirements...
- intelligence activities1. All activities that agencies within the Intelligence Community are authorized to conduct pursuant to...
- intelligence community (IC)1. Intelligence Community and elements of the Intelligence Community refers to: (1) The Office of the...
- intelligence community (IC) intelligence technology enterprise (ITE)The strategic implementation of the IC information environment to enable greater IC integration, information...
- Intelligence Community Standard, see ICS
- Intended ownerAn entity that intends to act as a signatory but has not yet obtained a private key that will be used to...
- Intended signatoryAn entity that intends to generate digital signatures in the future.
- Interactive UserA person who uses an SSH client to access one or more SSH servers, typically to perform administrative...
- interchangeableThe ability to combine signals from multiple PNT data sources into a single PNT solution, as well as the...
- interconnectionSee system interconnection.
- Interconnection Service Agreement, see ISA
- Inter-Enterprise SubsystemThe portion of the RFID system that connects multiple enterprise subsystems together. The inter-enterprise...
- interface1. A boundary between the IoT device and entities where interactions take place. There are two types of...
- Interface CapabilitiesCapabilities which enable interactions involving IoT devices (e.g., device-to-device communications...
- interface deviceAn electronic device that connects an integrated circuit card and the card applications therein to a client...
- interim authorization to test (IATT)Temporary authorization to test an information system in a specified operational information environment...
- Interior Border Gateway Protocol, see iBGP
- Intermediary ServiceA component that lies between the Service Client (subscriber) and the Service Provider (publisher). It...
- Intermediate Certification Authority (CA)A CA that is signed by a superior CA (e.g., a Root CA or another Intermediate CA) and signs CAs (e.g...
- intermittent ad-hoc connectionA needs-based connection initiated for a specific time or purpose after which the connection is terminated...
- internal assessment engagementFormal engagement led by a team within the organization that determines element judgments.
- Internal BGP, see iBGP
- Internal Border Gateway ProtocolA BGP operation communicating routing information within an AS.
- Internal ControlAn overarching mechanism that an enterprise uses to achieve and monitor enterprise objectives.
- internal network1. A network in which the establishment, maintenance, and provisioning of security controls are under the...
- internal security controlsHardware, firmware, or software features within an information system that restrict access to resources to...
- Internal Security TestingSecurity testing conducted from inside the organization’s security perimeter.
- Internal StateThe collection of stored information about a DRBG instantiation. This can include both secret and non-secret...
- International Mobile Equipment Identifier, see IMEI
- International Mobile Equipment Identity (IMEI)1. A unique identification number programmed into GSM and UMTS mobile devices.
- International Mobile Subscriber Identity (IMSI)1. A unique number associated with every GSM mobile phone subscriber, which is maintained on a (U)SIM.
- International Organization for Standardization, see ISO
- International Society of Automation, see ISA
- internet1. The single, interconnected, worldwide system of commercial, governmental, educational, and other computer...
- Internet Engineering Task Force (IETF)1. The Internet Engineering Task Force is the premier Internet standards body that develops open Internet...
- Internet Key Exchange (IKE)1. The Internet Engineering Task Force (IETF) protocol (RFC 5996) that is used to set up a security...
- Internet Message Access Protocol (IMAP)1. A mailbox access protocol defined by IETF RFC 3501. IMAP is one of the most commonly used mailbox access...
- Internet Protocol1. Standard protocol for transmission of data from source to destinations in packet-switched communications...
- Internet Protocol (IP) addressesStandard protocol for transmission of data from source to destinations in packet-switched communications...
- Internet Protocol Security1. An OSI Network layer security protocol that provides authentication and encryption over IP networks.
- Internet Systems Consortium, see ISC
- Interoperability1. The ability of one entity to communicate with another entity.
- Interoperability TestInteroperability tests measure the performance associated with the use of standardized biometric data records...
- interoperating systemSystem that exchanges information with the system of interest and uses the information that has been...
- InterpreterA program that processes a script or other program expression and carries out the requested action, in...
- inter-process communications (IPC)An operating system mechanism that allows processes to communicate. Mechanisms include (but are not limited...
- interval scaleFrom the Stevens Scale of Measurement, a quantitative measurement scale using variables with equal values and...
- intranetA computer network, especially one based on Internet technology, that an organization uses for its own...
- intrusion1. A security event, or a combination of multiple security events, that constitutes a security incident in...
- int(X)1. The integer for which the bit string X is a binary representation. len(X) The bit length of the bit string...
- InvalidateTo render a credential or authenticator incapable of being used for authentication by causing its...
- inventory1. The physical or virtual verification of the presence of each item of COMSEC material charged to a COMSEC...
- Inventory managementAs used in this Recommendation, the management of keys and/or certificates to monitor their status (e.g...
- inverseFor some group element x, the unique element y for which x+y is the identity element relative to the binary...
- Inverse Cipher Function (Inverse Cipher Operation)1. The function that reverses the transformation of the forward cipher function when the same cryptographic...
- Inverse Cipher Operation/Inverse TransformationThe block cipher algorithm function that is the inverse of the forward cipher function. The term “inverse...
- inverse transformationThe inverse of the permutation of blocks that is determined by the choice of a block cipher and a key.
- Invocation FieldIn the deterministic construction of IVs, the field that identifies the sets of inputs to the authenticated...
- I/OA general term for the equipment that is used to communicate with a computer as well as the data involved in...
- IOA general term for the equipment that is used to communicate with a computer as well as the data involved in...
- IoC, see Indicator of Compromise
- IoTThe network of devices that contain the hardware, software, firmware, and actuators which allow the devices...
- IoT deviceDevices that have at least one transducer (sensor or actuator) for interacting directly with the physical...
- IoT Platform1. A piece of IoT device hardware with supporting software already installed and configured for a...
- IoT Product1. An IoT device and any other product components necessary to use the IoT device.
- IoT Product Component1. Equipment (i.e., hardware and software) other than the primary device that can be hosted remotely...
- IoT Product DeveloperThe entity that creates an assembled final IoT product. Some cybersecurity outcomes may be supported by the...
- IP1. Useful artistic, technical, and/or industrial information, knowledge or ideas that convey ownership and...
- IP Payload Compression Protocol1. Protocol used to perform lossless compression for packet payloads.
- IP SecurityProvide(s) interoperable, high quality, cryptographically-based security for IPv4 and IPv6. The set of...
- IPComp1. Protocol used to perform lossless compression for packet payloads.
- IPSSystem which can detect an intrusive activity and can also attempt to stop the activity, ideally before it...
- IPsec1. An OSI Network layer security protocol that provides authentication and encryption over IP networks.
- IR1. The remediation or mitigation of violations of security policies and recommended practices.
- IREXIris Exchange - the NIST program supporting iris-based biometrics
- Iris segmentationSegmentation is the automated (and possibly manually reviewed) detection of the iris-sclera and iris-pupil...
- IRM, see information resources management (IRM)
- IRPThe documentation of a predetermined set of instructions or procedures to detect, respond to, and limit...
- IS1. The protection of information and information systems from unauthorized access, use, disclosure...
- ISAIndividual who implements approved secure baseline configurations, incorporates secure configuration settings...
- ISAOAn ISAO is any entity or collaboration created or employed by public- or private sector organizations, for...
- ISC1. A discrete, identifiable information technology asset (e.g., hardware, software, firmware) that represents...
- ISCM, see information security continuous monitoring (ISCM)
- ISCM Capability1. See ISCM Capability.
- ISCM DashboardA hierarchy of dashboards to facilitate reporting of appropriate security-related information at multiple...
- ISE, see information sharing environment (ISE)
- ISO1. Note: Organizations subordinate to federal agencies may use the term Senior Information Security Officer...
- isogenyA (non-constant) mapping from an elliptic curve to a second elliptic curve, which preserves point addition...
- IsolationThe ability to keep multiple instances of software separated so that each instance only sees and can affect...
- isomorphism (of elliptic curves)A bijective mapping from one elliptic curve to another, which maps addition (on the first curve) to addition...
- ISSM, see information systems security manager (ISSM)
- ISSO1. Individual with assigned responsibility for maintaining the appropriate operational security posture for...
- IssuanceAgreeing on the type of token that will be used for future authentication
- issuer1. The organization that is issuing the PIV Card to an applicant. Typically, this is an organization for...
- Issuing Facility1. A physical site or location - including all equipment, staff, and documentation - that is responsible for...
- ISUIndividual, or (system) process acting on behalf of an individual, authorized to access an information...
- IT1. Any equipment or interconnected system or subsystem of equipment that is used in the automatic...
- IT security awareness and training programExplains proper rules of behavior for the use of agency information systems and information. The program...
- IT security objectiveSee “Security objective”.
- IT System1. Any organized assembly of resources and procedures united and regulated by interaction or interdependence...
- Itanium Architecture, see IA
- ItemA named constituent of a benchmark. The three types of items are groups, rules, and values.
- ITL Software and Systems DivisionA Solid State Drive (SSD) is a storage device that uses solid state memory to store persistent data.
- IUTImplementation Under Test
- IV1. A bit string that is used as an initial value in computing the first iteration of the PRF in feedback...
- IVA, see independent validation authority (IVA)
- IvnBlock of data representing IV n
292 of 4,693 terms in Cybersecurity terminology (MLC-0102). Request the full dataset.