Privacy continuous monitoring program
Term · Cybersecurity · MLC-T-CYB-003245
1. An agency-wide program that implements the agency’s privacy continuous monitoring strategy and maintains ongoing awareness of threats and vulnerabilities that may pose privacy risks; monitors changes to information systems and environments of operation that create, collect, use, process, store, maintain, disseminate, disclose, or dispose of PII; and conducts privacy control assessments to verify the continued effectiveness of all privacy controls selected and implemented at an agency across the agency risk management tiers to ensure continued compliance with applicable privacy requirements and manage privacy risks.
2. An agency-wide program that implements the agency's privacy continuous monitoring strategy and maintains ongoing awareness of threats and vulnerabilities that may pose privacy risks; monitors changes to information systems and environments of operation that create, collect, use, process, store, maintain, disseminate, disclose, or dispose of PII; and conducts privacy control assessments to verify the continued effectiveness of all privacy controls selected and implemented at an agency across the agency risk management tiers to ensure continued compliance with applicable privacy requirements and manage privacy risks.
| Identifier | MLC-T-CYB-003245 |
|---|---|
| Field | Cybersecurity |
| References | NIST SP 800-18r2 from OMB Circular A-130 (2016); CNSSI 4009-2022 from OMB Circular A-130 (2016); NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-003245",
"term": "Privacy continuous monitoring program",
"field": "Cybersecurity",
"definition": "1. An agency-wide program that implements the agency’s privacy continuous monitoring strategy and maintains ongoing awareness of threats and vulnerabilities that may pose privacy risks; monitors changes to information systems and environments of operation that create, collect, use, process, store, maintain, disseminate, disclose, or dispose of PII; and conducts privacy control assessments to verify the continued effectiveness of all privacy controls selected and implemented at an agency across the agency risk management tiers to ensure continued compliance with applicable privacy requirements and manage privacy risks.\n\n2. An agency-wide program that implements the agency's privacy continuous monitoring strategy and maintains ongoing awareness of threats and vulnerabilities that may pose privacy risks; monitors changes to information systems and environments of operation that create, collect, use, process, store, maintain, disseminate, disclose, or dispose of PII; and conducts privacy control assessments to verify the continued effectiveness of all privacy controls selected and implemented at an agency across the agency risk management tiers to ensure continued compliance with applicable privacy requirements and manage privacy risks.",
"references": [
"NIST SP 800-18r2 from OMB Circular A-130 (2016)",
"CNSSI 4009-2022 from OMB Circular A-130 (2016)",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/privacy-continuous-monitoring-program/"
}
Record 3,229 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.