security policy filter
Term · Cybersecurity · MLC-T-CYB-003835
1. A hardware and/or software component that performs one or more of the following functions: (i) content verification to ensure the data type of the submitted content; (ii) content inspection, analyzing the submitted content to verify it complies with a defined policy (e.g., allowed vs. disallowed file constructs and content portions); (iii) malicious content checker that evaluates the content for malicious code; (iv) suspicious activity checker that evaluates or executes the content in a safe manner, such as in a sandbox/detonation chamber and monitors for suspicious activity; or (v) content sanitization, cleansing, and transformation, which modifies the submitted content to comply with a defined policy.
2. A hardware and/or software component that performs one or more of the following functions: content verification to ensure the data type of the submitted content; content inspection to analyze the submitted content and verify that complies with a defined policy; malicious content checker that evaluates the content for malicious code; suspicious activity checker that evaluates or executes the content in a safe manner, such as in a sandbox or detonation chamber and monitors for suspicious activity; or content sanitization, cleansing, and transformation, which modifies the submitted content to comply with a defined policy.
| Identifier | MLC-T-CYB-003835 |
|---|---|
| Field | Cybersecurity |
| References | NIST SP 800-53 Rev. 4 [Superseded]; NIST SP 800-53 Rev. 5; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-003835",
"term": "security policy filter",
"field": "Cybersecurity",
"definition": "1. A hardware and/or software component that performs one or more of the following functions: (i) content verification to ensure the data type of the submitted content; (ii) content inspection, analyzing the submitted content to verify it complies with a defined policy (e.g., allowed vs. disallowed file constructs and content portions); (iii) malicious content checker that evaluates the content for malicious code; (iv) suspicious activity checker that evaluates or executes the content in a safe manner, such as in a sandbox/detonation chamber and monitors for suspicious activity; or (v) content sanitization, cleansing, and transformation, which modifies the submitted content to comply with a defined policy.\n\n2. A hardware and/or software component that performs one or more of the following functions: content verification to ensure the data type of the submitted content; content inspection to analyze the submitted content and verify that complies with a defined policy; malicious content checker that evaluates the content for malicious code; suspicious activity checker that evaluates or executes the content in a safe manner, such as in a sandbox or detonation chamber and monitors for suspicious activity; or content sanitization, cleansing, and transformation, which modifies the submitted content to comply with a defined policy.",
"references": [
"NIST SP 800-53 Rev. 4 [Superseded]",
"NIST SP 800-53 Rev. 5",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/security-policy-filter/"
}
Record 3,835 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.