Security control inheritance
Term · Cybersecurity · MLC-T-CYB-003799
1. A situation in which an information system or application receives protection from security controls (or portions of security controls) that are developed, implemented, assessed, authorized, and monitored by entities other than those responsible for the system or application; entities either internal or external to the organization where the system or application resides. See Common Control.
2. A situation in which an information system or application receives protection from security controls (or portions of security controls) that are developed, implemented, and assessed, authorized, and monitored by entities other than those responsible for the system or application; entities either internal or external to the organization where the system or application resides. See common control.
3. See security control inheritance.
| Identifier | MLC-T-CYB-003799 |
|---|---|
| Field | Cybersecurity |
| Abbreviation | inheritance |
| References | NIST SP 800-137 from CNSSI 4009; NIST SP 800-30 Rev. 1 from CNSSI 4009; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-39 from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NIST SP 800-53A Rev. 4 [Superseded]; NISTIR 8170 from CNSSI 4009; CNSSI 4009-2015 from NIST SP 800-53A Rev. 1; CNSSI 4009-2015; NIST CSRC Glossary |
| See also | Common control |
Record as JSON
{
"id": "MLC-T-CYB-003799",
"term": "Security control inheritance",
"field": "Cybersecurity",
"definition": "1. A situation in which an information system or application receives protection from security controls (or portions of security controls) that are developed, implemented, assessed, authorized, and monitored by entities other than those responsible for the system or application; entities either internal or external to the organization where the system or application resides. See Common Control.\n\n2. A situation in which an information system or application receives protection from security controls (or portions of security controls) that are developed, implemented, and assessed, authorized, and monitored by entities other than those responsible for the system or application; entities either internal or external to the organization where the system or application resides. See common control.\n\n3. See security control inheritance.",
"abbreviation": "inheritance",
"see_also": [
"common control"
],
"references": [
"NIST SP 800-137 from CNSSI 4009; NIST SP 800-30 Rev. 1 from CNSSI 4009; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-39 from CNSSI 4009; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NIST SP 800-53A Rev. 4 [Superseded]; NISTIR 8170 from CNSSI 4009",
"CNSSI 4009-2015 from NIST SP 800-53A Rev. 1",
"CNSSI 4009-2015",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/security-control-inheritance/"
}
Record 3,780 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.