Previous

NEXT

chief information officer (CIO)

Agency official responsible for: (1) providing advice and other assistance to the head of the executive agency and other senior management personnel of the agency to ensure that information systems are acquired and information resources are managed in a manner that is consistent with laws, Executive Orders, directives, policies, regulations, and priorities established by the head of the agency; (2) developing, maintaining, and facilitating the implementation of a sound and integrated information system architecture for the agency; and (3) promoting the effective and efficient design and operation of all major information resources management processes for the agency, including improvements to work processes of the agency.
Note: Organizations subordinate to federal agencies may use the term Chief Information Officer to denote individuals filling positions with similar security responsibilities to agency-level Chief Information Officers.
Source: 40 U.S.C. Sec. 1425 (b); NIST SP 800-53 Rev 4

chief information security officer (CISO)

See senior agency information security officer (SAISO).
Source: FIPS PUB 200

cipher

1. Any cryptographic system in which arbitrary symbols or groups of symbols, represent units of plain text, or in which units of plain text are rearranged, or both.
2. Series of transformations that converts plaintext to ciphertext using the Cipher Key.
Source: FIPS PUB 197

cipher text auto-key (CTAK)

Cryptographic logic that uses previous cipher text to generate a key stream.

cipher text/ciphertext

Data in its encrypted form.
See BLACK.
Source: NIST SP 800-57 Part 1 Rev 3

claimant

A party whose identity is to be verified using an authentication protocol.
Source: FIPS PUB 201-1; NIST SP 800-63-2

classified information

See classified national security information.

classified information spillage (C.F.D.)

Security incident that occurs whenever classified data is spilled either onto an unclassified information system or to an information system with a lower level of classification or different security category.
Rationale: Spillage encompasses this term.

classified national security information

Information that has been determined pursuant to Executive Order (E.O.) 13526 or any predecessor order to require protection against unauthorized disclosure and is marked to indicate its classified status when in documentary form.
Source: E.O. 13526