Information system security officer
Term · Cybersecurity · MLC-T-CYB-002138
1. Individual with assigned responsibility for maintaining the appropriate operational security posture for an information system or program.
2. See information systems security officer (ISSO).
3. Person responsible to the designated approving authority for ensuring the security of an information system throughout its lifecycle, from design through disposal.
4. See system security officer (SSO).
5. Individual assigned responsibility by the senior agency information security officer, authorizing official, management official, or information system owner for ensuring that the appropriate operational security posture is maintained for an information system or program.
6. Individual assigned responsibility for maintaining the appropriate operational security posture for an information system or program.
[Note: ISSO responsibility may be assigned by the senior agency information security officer, authorizing official, management official, or information system owner.]
7. Individual assigned responsibility by the senior agency information security officer, authorizing official, management official, or information system owner for maintaining the appropriate operational security posture for an information system or program
8. Individual with assigned responsibility for maintaining the appropriate operational security posture for a system or program.
| Identifier | MLC-T-CYB-002138 |
|---|---|
| Field | Cybersecurity |
| Abbreviation | ISSO |
| Synonyms | system security officer; System Security Officer (SSO); systems security officer (SSO) |
| References | NIST SP 800-37 Rev. 2 from CNSSI 4009-2015; NIST SP 800-128 from NIST SP 800-37; NIST SP 800-37 Rev. 2; NIST SP 800-137 from CNSSI 4009; NIST SP 800-37 Rev. 1 [Superseded] from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; CNSSI 4009-2015 from NISTIR 7298 Rev. 2; NIST SP 800-32 [Withdrawn] from NSTISSI 4009; CNSSI 4009-2015 from NIST SP 800-30 Rev. 1; NIST SP 800-30 Rev. 1; NIST SP 800-39; NIST SP 800-53A Rev. 4 [Superseded]; NIST SP 800-60 Vol. 1 Rev. 1 from CNSSI 4009 (Adapted); NIST SP 800-60 Vol. 2 Rev. 1 from CNSSI 4009 (Adapted); NIST SP 800-18 Rev. 1 [Superseded] from CNSSI 4009 (Adapted); NISTIR 8170; NIST SP 800-128 from NIST SP 800-53; NIST SP 800-137A from NIST SP 800-37 Rev. 2; NIST SP 800-53 Rev. 5 from NIST SP 800-37 Rev. 2; NIST SP 800-53A Rev. 5 from NIST SP 800-37 Rev. 2; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-002138",
"term": "Information system security officer",
"field": "Cybersecurity",
"definition": "1. Individual with assigned responsibility for maintaining the appropriate operational security posture for an information system or program.\n\n2. See information systems security officer (ISSO).\n\n3. Person responsible to the designated approving authority for ensuring the security of an information system throughout its lifecycle, from design through disposal.\n\n4. See system security officer (SSO).\n\n5. Individual assigned responsibility by the senior agency information security officer, authorizing official, management official, or information system owner for ensuring that the appropriate operational security posture is maintained for an information system or program.\n\n6. Individual assigned responsibility for maintaining the appropriate operational security posture for an information system or program.\n[Note: ISSO responsibility may be assigned by the senior agency information security officer, authorizing official, management official, or information system owner.]\n\n7. Individual assigned responsibility by the senior agency information security officer, authorizing official, management official, or information system owner for maintaining the appropriate operational security posture for an information system or program\n\n8. Individual with assigned responsibility for maintaining the appropriate operational security posture for a system or program.",
"abbreviation": "ISSO",
"synonyms": [
"system security officer",
"System Security Officer (SSO)",
"systems security officer (SSO)"
],
"references": [
"NIST SP 800-37 Rev. 2 from CNSSI 4009-2015; NIST SP 800-128 from NIST SP 800-37; NIST SP 800-37 Rev. 2; NIST SP 800-137 from CNSSI 4009; NIST SP 800-37 Rev. 1 [Superseded] from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009",
"CNSSI 4009-2015 from NISTIR 7298 Rev. 2",
"NIST SP 800-32 [Withdrawn] from NSTISSI 4009",
"CNSSI 4009-2015 from NIST SP 800-30 Rev. 1; NIST SP 800-30 Rev. 1; NIST SP 800-39; NIST SP 800-53A Rev. 4 [Superseded]; NIST SP 800-60 Vol. 1 Rev. 1 from CNSSI 4009 (Adapted); NIST SP 800-60 Vol. 2 Rev. 1 from CNSSI 4009 (Adapted)",
"NIST SP 800-18 Rev. 1 [Superseded] from CNSSI 4009 (Adapted); NISTIR 8170",
"NIST SP 800-128 from NIST SP 800-53",
"NIST SP 800-137A from NIST SP 800-37 Rev. 2",
"NIST SP 800-53 Rev. 5 from NIST SP 800-37 Rev. 2; NIST SP 800-53A Rev. 5 from NIST SP 800-37 Rev. 2",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/information-system-security-officer/"
}
Record 2,129 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.