home/dictionary/privileged function

privileged function

nounverified·updated Sep 1, 2026

A category of system operation whose execution carries security- or integrity-relevant consequences that ordinary users are not authorized to trigger—such as disabling or altering security controls, establishing accounts, performing integrity checks, administering cryptographic key material, or circumventing detection mechanisms. NIST SP 800-53 enumerates canonical examples as "disabling, circumventing, or altering implemented security or privacy controls, establishing system accounts, performing system integrity checks, and administering cryptographic key management activities." The category typically encompasses control, monitoring, or administration of a system and its security measures. In practice, the field uses the term to anchor least-privilege and separation-of-duties controls: misuse of privileged functions—whether intentional or unintentional, by authorized insiders or external actors who have compromised accounts—is treated as a serious risk, and logging their execution is a primary mitigation.

Framework senses

NIST SP 800-171r31 senseview framework →
§1 · attested_usage_reviewer_confirmed
No definition is given in NIST SP 800-171r3. The term is attested in use at 8 citations in that document; a definition is pending curation.
Increment 2: attested in 800-171r3 without a glossary definition.
Legacy lexicon import1 senseview framework →
§1 · web_lookup_draft
A category of system operation whose execution carries security- or integrity-relevant consequences that ordinary users are not authorized to trigger—such as disabling or altering security controls, establishing accounts, performing integrity checks, administering cryptographic key material, or circumventing detection mechanisms. NIST SP 800-53 enumerates canonical examples as "disabling, circumventing, or altering implemented security or privacy controls, establishing system accounts, performing system integrity checks, and administering cryptographic key management activities." The category typically encompasses control, monitoring, or administration of a system and its security measures. In practice, the field uses the term to anchor least-privilege and separation-of-duties controls: misuse of privileged functions—whether intentional or unintentional, by authorized insiders or external actors who have compromised accounts—is treated as a serious risk, and logging their execution is a primary mitigation.
DR-088 backfill from the noun definition column