U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

A  |  B  |  C  |  D  |  E  |  F  |  G  |  H  |  I  |  J  |  K  |  L  |  M  |  N  |  O  |  P  |  Q  |  R  |  S  |  T  |  U  |  V  |  W  |  X  |  Y  |  Z

Security Authorization

Abbreviation(s) and Synonym(s):

Authorization

Definition(s):

  The right or a permission that is granted to a system entity to access a system resource.
Source(s):
NIST SP 1800-10B under Authorization from NIST SP 800-82 Rev. 2
NIST SP 1800-27C under Authorization from NIST SP 800-82 Rev. 2
NIST SP 800-82 Rev. 2 under Authorization from RFC 4949

  The official management decision given by a senior official to authorize operation of a system or the common controls inherited by designated organizations systems and to explicitly accept the risk to organizational operations (including mission, functions, image, and reputation), organizational assets, individuals, other organizations, and the Nation based on the implementation of an agreed-upon set of security and privacy controls. Also known as authorization to operate.
Source(s):
NIST SP 800-12 Rev. 1 under Authorization

  The process of verifying that a requested action or service is approved for a specific entity.
Source(s):
NIST SP 800-152 under Authorization
NIST SP 800-57 Part 2 Rev.1 under Authorization

  Access privileges granted to an entity; conveys an “official” sanction to perform a cryptographic function or other sensitive activity.
Source(s):
NIST SP 800-57 Part 2 Rev.1 under Authorization

  See authorization.
Source(s):
NIST SP 800-137

  Access privileges that are granted to an entity that convey an “official” sanction to perform a security function or activity.
Source(s):
NIST SP 800-57 Part 1 Rev. 5 under Authorization

  The granting or denying of access rights to a user, program, or process.
Source(s):
NISTIR 7316 under Authorization

  The process of initially establishing access privileges of an individual and subse­quently verifying the acceptability of a request for access.
Source(s):
NISTIR 4734 under Authorization