Terms Flashcards
ACAS: Assured Compliance Assessment
Solution. Includes a suite of products to include the Security Center, Nessus Scanner and the Nessus Network Monitor (formerly the Passive Vulnerability Scanner) which is provided by DISA to DoD Customers at no cost. DISA’s Cyber Development (CD) provides program management for the Enterprise ACAS offering as well as help desk support and training.
AOA
Analysis of Alternatives
an analytical comparison of the operational effectiveness, suitability, and life-cycle cost of alternatives that satisfy established capability needs.
ATHENA
Advanced Threat Hunt & Enterprise Network Analysis (Greek God of wisdom and war)
BIP
Budget prepared using a previous period budget or actual performance as a basis with incremental amounts added for the new budget period.
CAGE Code
Commercial and Government Entity is five-character ID number used extensively within the U.S. federal government, assigned by the DoD Logistics Agency. The code provides a standardized method of identifying a given facility at a specific location.
CCE
Collaborative Capture Environment
CCI
Control Correlation Identifier. Provides a standard identifier and description for each of the singular, actionable statements that comprise an IA control. Described how a control is implemented, i.e., what settings need to be validated. 1602 for DCSA systems at moderate, low, low
CCRI
Command Cyber Readiness Inspection. Describes IA control or IA best practice.
CDRL
Contract Data Requirements List DD Form 1423
CISSP
Certified Information Systems Security Professional. Approved by DoD through DoDD 8570 Information Assurance Workforce Improvement Program
CSIRC
Cybersecurity Intelligence and Response Center (CSIRC)
CAISWG
Community Association of Information Systems Security Working Group
Cloudbank
CloudBank will help NSF by bundling multiple small requests that come directly to NSF into a bulk request to cloud providers, dis-incentivizing more costly direct connections. Through this aggregation and innovative financial contract types, CloudBank will pass along savings to researchers that would otherwise be unavailable to them.
CNDSP
Computer Network Defense Service Provider
CNSSI 1253
Committee on National Security Systems Instruction 1253, Security Categorization and Control Selection for National Security Systems
COTR
Contracting Officer’s Technical Representative
CSSP
Cybersecurity CSSP: Cybersecurity service provider
CTTA
Certified TEMPEST Technical Authority
CVE
Common vulnerability exploit
DAAPM
DCSA Assessment and Authorization Process Manual
DCSA
Defense Counterintelligence and Security Agency
DD From 254
DoD Contract Security Specification
DFARS
Defense Federal Acquisition Regulation Supplement
DISS
Defense Information System for Security. Replacement for Joint Personnel Adjudication System (JPAS) effective 22 February 2021
EDR
Endpoint Detection and Response
eMASS
Enterprise Mission Assurance Support Service
FAR
Federal Acquisition Regulation
FEDRAMP
Federal Risk and Authorization Management Program
HBSS
Host Based Security System. DoD mandated tool used to provide intrusion prevention services with behavioral and signature protection. Also provides firewall protections.
HIPAA
Health Insurance Portability and Accountability Act
HPCMP
High performance Computing Modernization Program
IPA MSP
Industry Partner Access Managed Service Provider
ISOO
Information Security Oversight Office
ISR
Intelligence Surveillance and Reconnaissance