The IT Law Wiki
No edit summary
No edit summary
Line 3: Line 3:
 
'''Security requirements''' are
 
'''Security requirements''' are
   
{{Quote|those requirements levied on an [[information system]] that are derived from laws, Executive Orders, directives, policies, instructions, regulations, or organizational (mission) needs to ensure the [[confidentiality]], [[integrity]], and [[availability]] of the [[information]] being [[process]]ed, [[store]]d, or [[transmit]]ted.}}
+
{{Quote|those requirements levied on an [[information system]] that are derived from laws, [[Executive Order]]s, directives, [[policies]], instructions, regulations, or organizational (mission) needs to ensure the [[confidentiality]], [[integrity]], and [[availability]] of the [[information]] being [[process]]ed, [[store]]d, or [[transmit]]ted.<ref>[[NIST Special Publication 800-53]], Rev. 3.</ref>}}
   
== Source ==
+
== References ==
  +
<references />
 
* [[NIST Special Publication 800-53]], Rev. 3, [[Recommended Security Controls for Federal Information Systems and Organizations]] (Aug. 2009).
 
 
[[Category:Security]]
 
[[Category:Security]]
 
[[Category:Definition]]
 
[[Category:Definition]]

Revision as of 07:06, 7 November 2011

Definition

Security requirements are

those requirements levied on an information system that are derived from laws, Executive Orders, directives, policies, instructions, regulations, or organizational (mission) needs to ensure the confidentiality, integrity, and availability of the information being processed, stored, or transmitted.[1]

References