SIA
Term · Cybersecurity · MLC-T-CYB-003938
1. The analysis conducted by an organizational official to determine the extent to which a change to an information system has affected the security state of that system.
2. The analysis conducted by an organizational official to determine the extent to which a change to the information system has or may have affected the security posture of the system.
3. The analysis conducted by an agency official, often during the continuous monitoring phase of the security certification and accreditation process, to determine the extent to which changes to the information system have affected the security posture of the system.
| Identifier | MLC-T-CYB-003938 |
|---|---|
| Field | Cybersecurity |
| Expansions | Security Industry Association; Security Impact Analysis |
| References | NIST SP 800-137 from NIST SP 800-53; NIST SP 800-30 Rev. 1 from NIST SP 800-37; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-39 from NIST SP 800-37; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NIST SP 800-53A Rev. 4 [Superseded] from NIST SP 800-37; NIST SP 800-128 from CNSSI 4009 (Adapted); NIST SP 800-18 Rev. 1 [Superseded] from NIST SP 800-37; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-003938",
"term": "SIA",
"field": "Cybersecurity",
"definition": "1. The analysis conducted by an organizational official to determine the extent to which a change to an information system has affected the security state of that system.\n\n2. The analysis conducted by an organizational official to determine the extent to which a change to the information system has or may have affected the security posture of the system.\n\n3. The analysis conducted by an agency official, often during the continuous monitoring phase of the security certification and accreditation process, to determine the extent to which changes to the information system have affected the security posture of the system.",
"expansions": [
"Security Industry Association",
"Security Impact Analysis"
],
"references": [
"NIST SP 800-137 from NIST SP 800-53; NIST SP 800-30 Rev. 1 from NIST SP 800-37; NIST SP 800-37 Rev. 1 [Superseded]; NIST SP 800-39 from NIST SP 800-37; NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; NIST SP 800-53A Rev. 4 [Superseded] from NIST SP 800-37",
"NIST SP 800-128 from CNSSI 4009 (Adapted)",
"NIST SP 800-18 Rev. 1 [Superseded] from NIST SP 800-37",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/sia/"
}
Record 3,938 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.