seeCertificationandAccreditation.
Source(s):
NIST SP 800-16
under Approval to Operate
Certification involves the testing and evaluation of the technical and nontechnical security features of an IT system to determine its compliance with a set of specified security requirements. Accreditation is a process whereby a Designated Approval Authority (DAA) or other authorizing management official authorizes an IT system to operate for a specific purpose using a defined set of safeguards at an acceptable level of risk.
Source(s):
NIST SP 800-47
[Superseded]