MLchartDataset catalogue

RA

Term · Cybersecurity · MLC-T-CYB-003413

1. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system. Part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.

2. The process of identifying risks to agency operations (including mission, functions, image, or reputation), agency assets, or individuals by determining the probability of occurrence, the resulting impact, and additional security controls that would mitigate this impact. Part of risk management, synonymous with risk analysis, and incorporates threat and vulnerability analyses.

3. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of a system. Part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.

4. A systematic examination of risk using disciplined processes, methods, and tools. A risk assessment provides an environment for decision makers to evaluate and prioritize risks continuously and to recommend strategies to remediate or mitigate those risks.

5. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system.
Part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.

6. The process of identifying the risks to system security and determining the probability of occurrence, the resulting impact, and additional safeguards that would mitigate this impact. Part of Risk Management and synonymous with Risk Analysis.

7. The process of identifying, estimating, and prioritizing risks to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, and other organizations, resulting from the operation of a system. It is part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.

8. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system.
Part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls or privacy controls planned or in place. Synonymous with risk analysis.

9. The process of identifying risks to agency operations (including mission, functions, image, or reputation), agency assets, or individuals by determining the probability of occurrence, the resulting impact, and additional security controls that would mitigate this impact. Part of risk management, synonymous with risk analysis. Incorporates threat and vulnerability analyses.

10. An entity authorized by the certification authority system (CAS) to collect, verify, and submit information provided by potential subscribers, which is to be entered into public key certificates. The term RA refers to hardware, software, and individuals that collectively perform this function.

11. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system.

12. An organization approved by ISO/IEC for performing registration.

13. The process of identifying risks to agency operations (including mission, functions, image, or reputation), agency assets, or individuals by determining the probability of occurrence, the resulting impact, and additional security controls that would mitigate this impact.
Part of risk management, synonymous with risk analysis. Incorporates threat and vulnerability analyses.

14. The process of identifying, estimating, and prioritizing risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system. Part of risk management incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.

15. A value that defines an analyzer's estimated level of security risk for using an app. Risk assessments are typically based on the likelihood that a detected vulnerability will be exploited and the impact that the detected vulnerability may have on the app or its related device or network. Risk assessments are typically represented as categories (e.g., low-, moderate-, and high-risk).

Table 1. Record
IdentifierMLC-T-CYB-003413
FieldCybersecurity
ExpansionsReceiver Address; Reference Architecture; Registration Authority; Risk Assessment
ReferencesNIST SP 800-137 from CNSSI 4009; NIST SP 1800-21B from NIST SP 800-53 Rev. 4; NIST SP 800-18 Rev. 1 [Superseded] from NIST SP 800-30; NIST SP 800-12 Rev. 1 from NIST SP 800-39; NIST SP 800-30 Rev. 1 from NIST SP 800-39; NIST SP 800-39; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-53 Rev. 4 [Superseded]; NIST SP 1800-25B from NIST SP 800-63-2; NIST SP 1800-26B from NIST SP 800-63-2; NIST SP 800-63-2 [Superseded]; NIST SP 1800-10B from NIST SP 800-63-2; NIST SP 800-63-3 [Superseded]; NIST SP 800-53A Rev. 4 [Superseded]; NIST SP 800-82 Rev. 2 [Superseded] from NIST SP 800-30; NISTIR 8183A Vol. 1 from NIST SP 800-82; NISTIR 8183A Vol. 2 from NIST SP 800-82; NISTIR 8183A Vol. 3 from NIST SP 800-82; NISTIR 8183; NISTIR 8183 Rev. 1 from NIST SP 800-82 Rev. 2, NIST SP 800-82r3; NIST SP 1800-16D from CNSSI 4009-2015, CNSSI 4009-2022; NIST SP 1800-21C; NISTIR 5308 from ISO/IEC JTC1 N820; NISTIR 8183 from NIST SP 800-82 Rev. 2, NIST SP 800-82r3; NISTIR 8323 [Superseded] from NIST SP 800-30 Rev. 1; NIST SP 800-163 [Superseded]; NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-003413",
  "term": "RA",
  "field": "Cybersecurity",
  "definition": "1. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system. Part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.\n\n2. The process of identifying risks to agency operations (including mission, functions, image, or reputation), agency assets, or individuals by determining the probability of occurrence, the resulting impact, and additional security controls that would mitigate this impact. Part of risk management, synonymous with risk analysis, and incorporates threat and vulnerability analyses.\n\n3. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of a system. Part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.\n\n4. A systematic examination of risk using disciplined processes, methods, and tools. A risk assessment provides an environment for decision makers to evaluate and prioritize risks continuously and to recommend strategies to remediate or mitigate those risks.\n\n5. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system.\nPart of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.\n\n6. The process of identifying the risks to system security and determining the probability of occurrence, the resulting impact, and additional safeguards that would mitigate this impact. Part of Risk Management and synonymous with Risk Analysis.\n\n7. The process of identifying, estimating, and prioritizing risks to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, and other organizations, resulting from the operation of a system. It is part of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.\n\n8. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system.\nPart of risk management, incorporates threat and vulnerability analyses, and considers mitigations provided by security controls or privacy controls planned or in place. Synonymous with risk analysis.\n\n9. The process of identifying risks to agency operations (including mission, functions, image, or reputation), agency assets, or individuals by determining the probability of occurrence, the resulting impact, and additional security controls that would mitigate this impact. Part of risk management, synonymous with risk analysis. Incorporates threat and vulnerability analyses.\n\n10. An entity authorized by the certification authority system (CAS) to collect, verify, and submit information provided by potential subscribers, which is to be entered into public key certificates. The term RA refers to hardware, software, and individuals that collectively perform this function.\n\n11. The process of identifying risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system.\n\n12. An organization approved by ISO/IEC for performing registration.\n\n13. The process of identifying risks to agency operations (including mission, functions, image, or reputation), agency assets, or individuals by determining the probability of occurrence, the resulting impact, and additional security controls that would mitigate this impact.\nPart of risk management, synonymous with risk analysis. Incorporates threat and vulnerability analyses.\n\n14. The process of identifying, estimating, and prioritizing risks to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation, resulting from the operation of an information system. Part of risk management incorporates threat and vulnerability analyses, and considers mitigations provided by security controls planned or in place. Synonymous with risk analysis.\n\n15. A value that defines an analyzer's estimated level of security risk for using an app. Risk assessments are typically based on the likelihood that a detected vulnerability will be exploited and the impact that the detected vulnerability may have on the app or its related device or network. Risk assessments are typically represented as categories (e.g., low-, moderate-, and high-risk).",
  "expansions": [
    "Receiver Address",
    "Reference Architecture",
    "Registration Authority",
    "Risk Assessment"
  ],
  "references": [
    "NIST SP 800-137 from CNSSI 4009; NIST SP 1800-21B from NIST SP 800-53 Rev. 4",
    "NIST SP 800-18 Rev. 1 [Superseded] from NIST SP 800-30",
    "NIST SP 800-12 Rev. 1 from NIST SP 800-39",
    "NIST SP 800-30 Rev. 1 from NIST SP 800-39",
    "NIST SP 800-39; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-53 Rev. 4 [Superseded]",
    "NIST SP 1800-25B from NIST SP 800-63-2; NIST SP 1800-26B from NIST SP 800-63-2; NIST SP 800-63-2 [Superseded]; NIST SP 1800-10B from NIST SP 800-63-2",
    "NIST SP 800-63-3 [Superseded]",
    "NIST SP 800-53A Rev. 4 [Superseded]",
    "NIST SP 800-82 Rev. 2 [Superseded] from NIST SP 800-30; NISTIR 8183A Vol. 1 from NIST SP 800-82; NISTIR 8183A Vol. 2 from NIST SP 800-82; NISTIR 8183A Vol. 3 from NIST SP 800-82; NISTIR 8183; NISTIR 8183 Rev. 1 from NIST SP 800-82 Rev. 2, NIST SP 800-82r3",
    "NIST SP 1800-16D from CNSSI 4009-2015, CNSSI 4009-2022",
    "NIST SP 1800-21C",
    "NISTIR 5308 from ISO/IEC JTC1 N820",
    "NISTIR 8183 from NIST SP 800-82 Rev. 2, NIST SP 800-82r3",
    "NISTIR 8323 [Superseded] from NIST SP 800-30 Rev. 1",
    "NIST SP 800-163 [Superseded]",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/ra/"
}

Record 3,413 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.