Cybersecurity terminology · MLC-0102
Cybersecurity terms: N (125)
- N1. The number of M-bit blocks to be tested.
- (n, d)RSA private key in the basic format.
- (n, e)RSA public key.
- (n, e, d, p, q, dP, dQ, qInv)RSA private key in the Chinese Remainder Theorem (CRT) format.
- NAC, see Network Access Control (NAC)
- nameA unique identifier associated with a registered object. This register assigns two of names, a numeric name...
- Namespace isolationA form of isolation that limits which resources a container may interact with.
- Narrowest internal widthThe maximum amount of information from the input that can affect the output. For example, if f(x) = SHA-1(x)...
- NAT1. A mechanism for mapping addresses on one network to addresses on another network, typically private...
- National Checklist Program RepositoryA NIST-maintained repository, which is a publicly available resource that contains information on a variety...
- National COMSEC Incident Reporting System (NCIRS)System established by the National Security Agency (NSA) as a means of ensuring that all reported incidents...
- National Essential FunctionsThe select functions that are necessary to lead and sustain the United States during a catastrophic emergency...
- National Information Assurance Partnership (NIAP)A U.S. Government initiative managed by the National Security Agency, established to promote the use of...
- national information infrastructure (NII)Nationwide interconnection of communications networks, computers, databases, and consumer electronics that...
- National Online Informative References Program, see OLIR
- national security emergency preparedness (NSEP) telecommunications servicesTelecommunications services that are used to maintain a state of readiness or to respond to and manage any...
- national security information (NSI)1. Information that has been determined pursuant to Executive Order 12958 as amended by Executive Order...
- national security system (NSS)1. Any information system (including any telecommunications system) used or operated by an agency or by a...
- National Vulnerability Database1. The U.S. Government repository of standards-based vulnerability management data, enabling automation of...
- natural language policyStatements governing management and access of enterprise objects. NLPs are human expressions that can be...
- natural personA real-life human being, not synthetic or artificial.
- navigationThe ability to determine a current and desired position (relative or absolute) and apply corrections to...
- nBits1. The bit length of the RSA modulus n.
- NC1. A varying value that has, at most, a negligible chance of repeating; for example, a random value that is...
- NCIRS, see National COMSEC Incident Reporting System (NCIRS)
- NDA, see non-disclosure agreement
- NDACSee mandatory access control (MAC).
- Near Field Communication (NFC)A form of contactless, close proximity, radio communications based on radio-frequency identification (RFID)...
- needs assessmentThe process of identifying gaps in learning and the needs of learning activities.
- need-to-know1. A determination within the executive branch in accordance with directives issued pursuant to this order...
- NEF, see National Essential Functions
- negative control (security)Passive form of security monitoring where a specified action or event triggers an alarm; a lack of...
- negative risk1. Any circumstance or event with the potential to adversely impact organizational operations and assets...
- negligibleExtremely small. Typically quantifies the probability of an undesirable event that might occur during the...
- neighboring datasetsThe definition of neighboring datasets is a parameter to the differential privacy framework. In many...
- network1. An open communications medium, typically the internet, used to transport messages between the claimant and...
- network access1. Access to a system by a user (or a process acting on behalf of a user) communicating through a network...
- Network Access Control (NAC)A feature provided by some firewalls that allows access based on a user’s credentials and the results of...
- Network Address Translation (NAT)1. A routing technology used by many firewalls to hide internal system addresses from an external network...
- Network Address Translator, see NAT
- Network Administrator1. A person who manages a local area network (LAN) within an organization. Responsibilities include ensuring...
- network bootstrapping credentialsCredentials that a device needs in order to establish communications with and be authenticated by the network...
- network defensePrograms and activities (including those governed by PPD-41), and the use of tools necessary to facilitate...
- Network DiscoveryThe process of discovering active and responding hosts on a network, identifying weaknesses, and learning how...
- Network ExtensionA method of providing partial or complete network access to remote users.
- network interconnectionA physical or virtual communications link between two or more networks operated by different organizations or...
- Network Interface1. An interface that connects an IoT device to a network (e.g., Ethernet, Wi-Fi, Bluetooth, Long-Term...
- Network Interface CapabilityThe ability to interface with a communication network for the purpose of communicating data to or from an IoT...
- Network Intrusion Detection SystemSoftware that performs packet sniffing and network traffic analysis to identify suspicious activity and...
- Network LayerLayer of the TCP/IP protocol stack that is responsible for routing packets across networks.
- Network Layer Security1. Protecting network communications at the layer of the TCP/IP model that is responsible for routing packets...
- network mapA representation of the internal network topologies and components down to the host/device level to include...
- network mappingA process that discovers, collects, and displays the physical and logical information required to produce a...
- network onboarding componentA logical component that is authorized to act on behalf of the network to onboard devices that are authorized...
- network resilienceA computing infrastructure that provides continuous business operation (i.e., highly resistant to disruption...
- Network SniffingA passive technique that monitors network communication, decodes protocols, and examines headers and payloads...
- Network Time ProtocolUsed in networks of all types and sizes for time synchronization of servers, workstations, and other...
- Network TrafficComputer network communications that are carried over wired or wireless networks between hosts.
- network-based intrusion detection and prevention systemAn intrusion detection and prevention system that monitors network traffic for particular network segments or...
- network-layer onboardingConsists of the actions required to provide an IoT device with the network credentials (and possibly other...
- next generation encryption (NGE)An NSA portfolio of development programs to support the DoD's Cryptographic Modernization Initiative to...
- Next-generation Database Access Control, see NDAC
- NFC, see Near Field Communication (NFC)
- NFIQNIST Fingerprint Image Quality - an automated algorithm for quantifying good fingerprint images; available as...
- NFTAn owned, transferable, and indivisible data record that is a digital representation of a physical or virtual...
- NIAP, see National Information Assurance Partnership (NIAP)
- NIAP product compliant list (PCL)The list of CS and CS-enabled COTS products evaluated and validated pursuant to the National Information...
- niche cross domain solution (CDS)Cross domain solution that may (1) serve a specific narrow purpose, or (2) be built on very specialized...
- NIDSSoftware that performs packet sniffing and network traffic analysis to identify suspicious activity and...
- NII, see national information infrastructure (NII)
- NIST Checklist RepositoryThe website that maintains the checklists, the descriptions of the checklists, and other information...
- NIST Interagency or Internal Report, see IR; IT
- NIST Risk Management Framework, see RMF
- NIST SP, see NIST Special Publication
- NIST Special Publication1. Include proceedings of conferences sponsored by NIST, NIST annual reports, and other special publications...
- NIST standardFederal Information Processing Standard (FIPS) or Special Publication (SP).
- NIST standardsFederal Information Processing Standards (FIPS) and NIST Recommendations.
- NIST-allowedSpecified in a list of allowed security functions (e.g., in an annex to [FIPS 140]).
- NIST-approvedFIPS-approved or NIST-Recommended.
- (n,k) ruleA cell is regarded as confidential, if the n largest units contribute more than k % to the cell total, e.g...
- nLen1. The bit length of the nonce.
- NLPStatements governing management and access of enterprise objects. NLPs are human expressions that can be...
- NLZ, see no-lone zone (NLZ)
- NodeAn individual system within the blockchain network.
- noiseA convenient term for a series of random disturbances borrowed through communication engineering, from the...
- noise additionA de-identification technique that modifies a dataset by adding random values to the values of a selected...
- noise infusionA de-identification technique that modifies a dataset by adding random values to the values of a selected...
- noise injectionA de-identification technique that modifies a dataset by adding random values to the values of a selected...
- Noise sourceThe component of an entropy source that contains the non-deterministic, entropy-producing activity (e.g...
- no-lone zone (NLZ)An area, room, or space that, when staffed, must be occupied by two or more appropriately cleared individuals...
- nominal frequencyAn ideal frequency with zero uncertainty. The nominal frequency is the frequency labeled on an oscillator’s...
- nominal scaleFrom the Stevens Scale of Measurement, a scale that labels named variables into classifications.
- non-adversarial threat1. A threat associated with accident or human error, structural failure, or environmental causes.
- Non-assurance messageA signed message that does not contain all information required for an assurance message.
- Non-Automated ChecklistA checklist that is designed to be used manually, such as English prose instructions that describe the steps...
- nonce1. A time-varying value that has - at most - a negligible chance of repeating; for example, a random value...
- nonce-misuseA setting in which a nonce is used more than once for the encryption algorithm under a given key.
- nonce-respectingA setting in which a nonce is never repeated for the encryption algorithm under a given key.
- Non-component, see NC
- Non-CustodialRefers to an application or process that does not require users to relinquish any control over their data or...
- non-deterministic noise1. A random value that cannot be predicted.
- Non-deterministic Random Bit Generator (NRBG)1. An RBG that always has access to an entropy source and (when working properly) produces output bitstrings...
- non-disclosure agreementDelineates specific information, materials, or knowledge that the signatories agree not to release or divulge...
- non-discretionary access control1. A means of restricting access to objects based on the sensitivity (as represented by a security label) of...
- nonfederal organizationAn entity that owns, operates, or maintains a nonfederal system.
- nonfederal systemA system that does not meet the criteria for a federal system.
- NonfungibleRefers to something that is uniquely identifiable (i.e., not replaceable or interchangeable).
- non-fungible tokenAn owned, transferable, and indivisible data record that is a digital representation of a physical or virtual...
- non-ignorable biasIn the context of de-identification, a bias that results from the suppression or redaction of data based on...
- Non-local ConnectionA connection to the manufacturing system affording the user access to system resources and system...
- nonlocal maintenance1. Maintenance activities conducted by individuals communicating through an external network (e.g., the...
- Non-MUD-CapableAn IoT device that is not capable of emitting a MUD URL in compliance with the MUD specification.
- non-organizational userA user who is not an organizational user (including public users).
- Non-Owner1. An OLIR produced by anyone other than the owner of the Reference Document.
- non-person entity (NPE)An entity related to information technology with a digital identity that acts in cyberspace, but is not a...
- Non-physical non-deterministic random bit generatorAn entropy source that does not use dedicated hardware but uses system resources (RAM content, thread number...
- Non-Public Personal InformationInformation about a person that is not publicly known; called “private information” in some other...
- non-repudiation1. A service that is used to provide assurance of the integrity and origin of data in such a way that the...
- Non-Technical Supporting Capability1. Non-technical supporting capabilities are actions an organization performs in support of the cybersecurity...
- Non-Technical Supporting Capability Core BaselineThe non-technical supporting capability core baseline is a set of non-technical supporting capabilities...
- Non-Technology-Based Input ProductManufactured component parts or materials used in the organization manufacturing process that do not...
- Nonvalidating DNSSEC-Aware Stub ResolverA DNSSEC-aware stub resolver that trusts one or more DNSSEC-aware recursive name servers to perform most of...
- Non-vendor-directedThis term is used to indicate that any sample chosen for testing is selected by the testing laboratory...
- Non-Volatile DataData that persists even after a computer is powered down.
- Normal (Gaussian) DistributionA continuous distribution whose density function is given by f(x;μ;σ)=1/√(〖2πσ〗^2 ) e^(-〖1/2 ((x-μ)/σ)〗^2 ) ...
- Normal OperationThe process of using a system.
- Normalization1. The conversion of information into consistent representations and categorization.
- Normalization strategyThe similarity function can follow one of two normalization strategies, depending on whether the algorithm...
- NormalizeThe process by which differently formatted data is converted into a standardized format and labeled...
- NotaryA trusted entity that submits transactions across blockchains on behalf of users, often with respect to...
- NPE, see non-person entity (NPE)
- NPPIInformation about a person that is not publicly known; called “private information” in some other...
- NRBG, see Non-deterministic Random Bit Generator (NRBG); Deterministic Random Bit Generator
- NSA-approved commercial solutionThe combination of multiple COTS CS products in a layered configuration that satisfies the security...
- NSA-approved cryptography1. Cryptography that consists of: (i) an approved algorithm; (ii) an implementation that has been approved...
- NSIInformation that has been determined pursuant to Executive Order 12958 as amended by Executive Order 13292...
- NSS1. Any information system (including any telecommunications system) used or operated by an agency or by a...
- NSS baselinesThe combination of applicable NIST SP 800-53 baselines and the security and privacy controls required for...
- NTP, see Network Time Protocol
- Nuclear Command and Control Information Assurance Material (NCCIM)Cryptographic materials necessary to assure release of a nuclear weapon at the direction of the President and...
- Null1. The empty bit string
- NVNonce contributed by party V; a byte string.
- NVD1. The U.S. Government repository of standards-based vulnerability management data, enabling automation of...
125 of 4,693 terms in Cybersecurity terminology (MLC-0102). Request the full dataset.