U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

A  |  B  |  C  |  D  |  E  |  F  |  G  |  H  |  I  |  J  |  K  |  L  |  M  |  N  |  O  |  P  |  Q  |  R  |  S  |  T  |  U  |  V  |  W  |  X  |  Y  |  Z

Security Assurance

Abbreviation(s) and Synonym(s):

Assurance

Definition(s):

  Measure of confidence that the security features, practices, procedures, and architecture of an information system accurately mediates and enforces the security policy.
Source(s):
NIST SP 800-39 under Assurance from CNSSI 4009
NIST SP 800-53 Rev. 4 [Superseded] under Assurance from CNSSI 4009

  The grounds for confidence that the set of intended security controls in an information system are effective in their application.
Source(s):
NIST SP 800-137 under Assurance from NISTIR 7298
NIST SP 800-37 Rev. 1 [Superseded] under Assurance

  Grounds for confidence that the set of intended security controls in an information system are effective in their application.
Source(s):
NIST SP 800-39 under Assurance from NIST SP 800-53

  Grounds for confidence that the other four security goals (integrity, availability, confidentiality, and accountability) have been adequately met by a specific implementation. “Adequately met” includes (1) functionality that performs correctly, (2) sufficient protection against unintentional errors (by users or software), and (3) sufficient resistance to intentional penetration or by-pass.
Source(s):
NIST SP 800-12 Rev. 1 under Assurance from NIST SP 800-27 Rev. A

  The grounds for confidence that the set of intended security controls or privacy controls in an information system or organization are effective in their application.
Source(s):
NIST SP 800-53A Rev. 4 under Assurance

  The grounds for confidence that an entity meets its security objectives.
Source(s):
NISTIR 7316 under Assurance

  See Assurance.
Source(s):
NIST SP 800-53 Rev. 4 [Superseded]

  In the context of OMB M-04-04 and this document, assurance is defined as 1) the degree of confidence in the vetting process used to establish the identity of an individual to whom the credential was issued, and 2) the degree of confidence that the individual who uses the credential is the individual to whom the credential was issued.
Source(s):
NIST SP 800-63-2 [Superseded] under Assurance