insider threat
Term · Cybersecurity · MLC-T-CYB-002165
1. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.
2. An entity with authorized access (i.e., within the security domain) that has the potential to harm an information system or enterprise through destruction, disclosure, modification of data, and/or denial of service.
3. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure of national security information, or through the loss or degradation of departmental resources or capabilities.
4. An entity with authorized access that has the potential to harm an information system through destruction, disclosure, modification of data, and/or denial of service.
5. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of organizational operations and assets, individuals, other organizations, and the Nation. This threat can include damage through espionage, terrorism, unauthorized disclosure of national security information, or through the loss or degradation of organizational resources or capabilities.
6. The threat that an insider will use their authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.
| Identifier | MLC-T-CYB-002165 |
|---|---|
| Field | Cybersecurity |
| References | CNSSI 4009-2015 from CNSSD No. 504 (Adapted); NIST SP 800-171 Rev. 2 [Superseded]; NIST SP 800-171 Rev. 1 [Superseded]; NIST SP 800-171r3; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from Presidential Memorandum, National Insider Threat Policy and Minimum Standards for Executive Branch Insider Threat Programs; NIST SP 800-32 [Withdrawn]; NIST SP 800-53 Rev. 5 from CNSSI 4009-2015 (Adapted), CNSSI 4009-2022 (Adapted); NIST SP 800-172 [Superseded]; NIST SP 800-172r3; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-002165",
"term": "insider threat",
"field": "Cybersecurity",
"definition": "1. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.\n\n2. An entity with authorized access (i.e., within the security domain) that has the potential to harm an information system or enterprise through destruction, disclosure, modification of data, and/or denial of service.\n\n3. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure of national security information, or through the loss or degradation of departmental resources or capabilities.\n\n4. An entity with authorized access that has the potential to harm an information system through destruction, disclosure, modification of data, and/or denial of service.\n\n5. The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of organizational operations and assets, individuals, other organizations, and the Nation. This threat can include damage through espionage, terrorism, unauthorized disclosure of national security information, or through the loss or degradation of organizational resources or capabilities.\n\n6. The threat that an insider will use their authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.",
"references": [
"CNSSI 4009-2015 from CNSSD No. 504 (Adapted); NIST SP 800-171 Rev. 2 [Superseded]; NIST SP 800-171 Rev. 1 [Superseded]; NIST SP 800-171r3",
"NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009",
"NIST SP 800-53 Rev. 4 [Superseded] from Presidential Memorandum, National Insider Threat Policy and Minimum Standards for Executive Branch Insider Threat Programs",
"NIST SP 800-32 [Withdrawn]",
"NIST SP 800-53 Rev. 5 from CNSSI 4009-2015 (Adapted), CNSSI 4009-2022 (Adapted)",
"NIST SP 800-172 [Superseded]; NIST SP 800-172r3",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/insider-threat/"
}
Record 2,165 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.