acronyms
COMMON ABBREVIATIONS
| APT | Advanced Persistent Threat |
|---|---|
| CFR | Code of Federal Regulations |
| CIO | Chief Information Officer |
| CISO | Chief Information Security Officer |
| CAVP | Cryptographic Algorithm Validation Program |
| CMVP | Cryptographic Module Validation Program |
| CNSS | Committee on National Security Systems |
| CPO | Chief Privacy Officer |
| CUI | Controlled Unclassified Information |
| DCS | Distributed Control System |
| DNS | Domain Name System |
| DoD | Department of Defense |
| FAR | Federal Acquisition Regulation |
| FEA | Federal Enterprise Architecture |
| FICAM | Federal Identity, Credential, and Access Management |
| FIPP | Fair Information Practice Principles |
| FIPS | Federal Information Processing Standards |
| FISMA | Federal Information Security Management Act |
| HSPD | Homeland Security Presidential Directive |
| ICS | Industrial Control System |
| IEEE | Institute of Electrical and Electronics Engineers |
| IPsec | Internet Protocol Security |
| ISO/IEC | International Organization for Standardization/International Electrotechnical Commission |
| ITL | Information Technology Laboratory |
| LACS | Logical Access Control System |
| LSI | Large-Scale Integration |
| NIST | National Institute of Standards and Technology |
| NISTIR | National Institute of Standards and Technology Interagency or Internal Report |
| NSA | National Security Agency |
| NSTISSI | National Security Telecommunications and Information System Security Instruction |
| ODNI | Office of the Director of National Intelligence |
| OMB | Office of Management and Budget |
| OPSEC | Operations Security |
| PBX | Private Branch Exchange |
| PACS | Physical Access Control System |
| PIA | Privacy Impact Assessment |
| PII | Personally Identifiable Information |
| PIV | Personal Identity Verification |
| PKI | Public Key Infrastructure |
| RBAC | Role-Based Access Control |
| RD | Restricted Data |
| RMF | Risk Management Framework |
| SAISO | Senior Agency Information Security Officer |
| SAMI | Sources And Methods Information |
| SAOP | Senior Agency Official for Privacy |
| SAP | Special Access Program |
| SC | Security Category |
| SCADA | Supervisory Control and Data Acquisition |
| SCI | Sensitive Compartmented Information |
| SOA | Service-Oriented Architecture |
| SORN | System of Records Notice |
| SP | Special Publication |
| TCP/IP | Transmission Control Protocol/Internet Protocol |
| USB | Universal Serial Bus |
| VoIP | Voice over Internet Protocol |
| VPN | Virtual Private Network |
appendix d