insider
Term · Cybersecurity · MLC-T-CYB-002164
1. Any person with authorized access to any United States Government resource to include personnel, facilities, information, equipment, networks, or systems.
2. Any person with authorized access to any U.S. Government resource, to include personnel, facilities, information, equipment, networks, or systems.
3. An entity inside the security perimeter that is authorized to access system resources but uses them in a way not approved by those who granted the authorization.
4. Any person with authorized access to any organizational resource, to include personnel, facilities, information, equipment, networks, or systems.
5. Any person with authorized access to business resources, including personnel, facilities, information, equipment, networks, or systems.
| Identifier | MLC-T-CYB-002164 |
|---|---|
| Field | Cybersecurity |
| References | CNSSI 4009-2015 from CNSSD No. 504; NIST SP 800-53 Rev. 4 [Superseded] from Presidential Memorandum, National Insider Threat Policy and Minimum Standards for Executive Branch Insider Threat Programs; NIST SP 800-82 Rev. 2 [Superseded] from RFC 4949; NIST SP 1800-25B from NIST SP 800-82 Rev. 2, RFC 4949, NIST SP 800-82r3; NIST SP 1800-26B from NIST SP 800-82 Rev. 2, RFC 4949, NIST SP 800-82r3; NIST SP 800-82r3; NIST SP 800-53 Rev. 5 from CNSSI 4009-2015 (Adapted), CNSSI 4009-2022 (Adapted); NISTIR 7621 Rev. 1 from CNSSI 4009-2015 (adapted), CNSSI 4009-2022 (adapted); NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-002164",
"term": "insider",
"field": "Cybersecurity",
"definition": "1. Any person with authorized access to any United States Government resource to include personnel, facilities, information, equipment, networks, or systems.\n\n2. Any person with authorized access to any U.S. Government resource, to include personnel, facilities, information, equipment, networks, or systems.\n\n3. An entity inside the security perimeter that is authorized to access system resources but uses them in a way not approved by those who granted the authorization.\n\n4. Any person with authorized access to any organizational resource, to include personnel, facilities, information, equipment, networks, or systems.\n\n5. Any person with authorized access to business resources, including personnel, facilities, information, equipment, networks, or systems.",
"references": [
"CNSSI 4009-2015 from CNSSD No. 504",
"NIST SP 800-53 Rev. 4 [Superseded] from Presidential Memorandum, National Insider Threat Policy and Minimum Standards for Executive Branch Insider Threat Programs",
"NIST SP 800-82 Rev. 2 [Superseded] from RFC 4949; NIST SP 1800-25B from NIST SP 800-82 Rev. 2, RFC 4949, NIST SP 800-82r3; NIST SP 1800-26B from NIST SP 800-82 Rev. 2, RFC 4949, NIST SP 800-82r3; NIST SP 800-82r3",
"NIST SP 800-53 Rev. 5 from CNSSI 4009-2015 (Adapted), CNSSI 4009-2022 (Adapted)",
"NISTIR 7621 Rev. 1 from CNSSI 4009-2015 (adapted), CNSSI 4009-2022 (adapted)",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/insider/"
}
Record 2,164 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.