Dictionary · NERC CIP-011-2 (Information Protection) v2
L2 — definitions grouped by regulatory framework.
Verbs
8 senses- destroy
To put an end to the existence of something by attacking, damaging, or demolishing.
- transit
A carrying of people or things from one place to another.
- establish and maintain
To lay the groundwork for something and uphold it or ensure continuation by requiring maintenance.
- retain
To keep in possession.
- identify
To establish, indicate, or verify who or what someone or something is.
- prevent
To keep something from happening or stop someone from doing something.
- use
The action of employing something or the state of being put into action for some purpose.
- keep
To have or maintain possession of something.
Nouns
23 senses- year
A period of time equal to roughly 365 days.
- Bulk Electric System Cyber System Information
Information about the BES Cyber System that could be used to gain unauthorized access or pose a security threat to the BES Cyber System. BES Cyber System Information does not include individual pieces of information that by themselves do not pose a threat or could not be used to allow unauthorized access to BES Cyber Systems, such as, but not limited to, device names, individual IP addresses without context, ESP names, or policy statements. Examples of BES Cyber System Information may include, but are not limited to, security procedures or security information about BES Cyber Systems, Physical Access Control Systems, and Electronic Access Control or Monitoring Systems that is not publicly available and could be used to allow unauthorized access or unauthorized distribution; collections of network addresses; and network topology of the BES Cyber System.
- Bulk Electric System Cyber System
One or more Bulk Electric System (BES) Cyber Assets logically grouped by a responsible entity to perform one or more reliability tasks for a functional entity.
- Compliance Enforcement Authority
The North American Electric Reliability Corporation (NERC) or the Regional Entity in their respective roles of monitoring and enforcing compliance with the NERC Reliability Standards.
- cyber asset
Programmable electronic devices and communication networks including hardware, software and data.
- data
A subset of information in an electronic format that allows it to be retrieved or transmitted. (CNSSI-4009)
- data storage media
The physical form of how data is stored (e.g. magnetic tape, CD-ROM, paper).
- non-compliance
The failure to achieve performance criteria of a regulation or authority.
- prior
Existing or coming before in time, order, or importance.
- records management procedure
A detailed description of the steps necessary to systematically and administratively control records throughout their life cycle in conformance with applicable standards.
- requirement
A formal statement of a necessary condition; something needed.
- responsible entity
Any group or even individual with an organization that has been given a particular responsibility for a particular process.
- storage
The action or method of keeping something for future use.
- three
The Roman numeral of the cardinal number three.
- audit record
An individual entry in an audit log related to an audited event.
- disposal
The purpose of this task is to address the final disposition of regulated data by discarding media with no other sanitization considerations or transferring records to their final state: either destruction or transfer to an archive.
- Evidence
Information used to establish facts.
- include
Make part of a whole or set.
- information
Any communication or representation of knowledge such as facts, data, or opinions in any medium or form, including textual, numerical, graphic, cartographic, narrative, or audiovisual.
- retrieval
The process of getting something back from somewhere.
- reuse
The action of using something again or more than once.
- meet
Fulfill or satisfy (a need, requirement, or condition).
- method
A means or particular procedure for accomplishing or approaching something.