Glossary · MWE Terms · I
L1 — paginated flat list. Pick a POS, pick a letter.
TermTypeDefinitionClassificationsUpdated
Inferior Mesenteric ArterynounMWEarises near the lower end of the aorta and supplies the large intestineverified
Inferior Ophthalmic VeinnounMWEa vein that drains a venous network in the floor and medial wall of the eye socketverified
Inferior Pulmonary VeinnounMWEeither of two pulmonary veins (left and right) returning blood from the inferior lobes of the lungsverified
Inferior RectusnounMWEthe ocular muscle whose contraction turns the eyeball down and mediallyverified
Inferior Rectus MusclenounMWEthe ocular muscle whose contraction turns the eyeball down and mediallyverified
Inferior Thyroid VeinnounMWEany of several veins on each side that drain the thyroid gland and empty into the innominate veinverified
Inferior Vena CavanounMWEreceives blood from lower limbs and abdominal organs and empties into the posterior part of the right atrium of the heartverified
Inferior Vocal CordnounMWEeither of the two lower vocal folds that come together to form the glottisverified
Inferior Vocal FoldnounMWEeither of the two lower vocal folds that come together to form the glottisverified
Inferiority ComplexnounMWEa sense of personal inferiority arising from conflict between the desire to be noticed and the fear of being humiliatedverified
Infernal MachinenounMWEa bomb that has a detonating mechanism that can be set to go off at a particular timeverified
Infinitesimal CalculusnounMWEthe branch of mathematics that is concerned with limits and with the differentiation and integration of functionsverified
Infix NotationnounMWEa notation for forming mathematical expressions using parentheses and governed by rules of operator precedenceverified
Inflation RatenounMWEthe rate of change of prices (as indicated by a price index) calculated on a monthly or annual basisverified
Inflation TherapynounMWEtherapy in which water or oxygen or a drug is introduced into the respiratory tract with inhaled airverified
Inflationary SpiralnounMWEan episode of inflation in which prices and wages increase at an increasing rate and currency rapidly loses valueverified
Influential PersonnounMWEa person whose actions and opinions strongly influence the course of eventsverified
Informal Security PolicynounMWENatural language description, possibly supplemented by mathematical arguments, demonstrating the correspondence of the functional specification to the high-level design.verified
information accessnounMWEThis phrase is **compositional** — it is the ordinary English pairing of "access" (the ability to obtain or read) with "information" (the object being accessed), used to describe the permitted operation of reading or observing data without the ability to modify, write, or transmit it back. Access control in this field concerns "the process of granting or denying specific requests to obtain and use information and related information processing services." In the context the user quotes — "allowing information access only" enforced by hardware one-way mechanisms — the phrase simply scopes the permitted operation to read/observe, as distinguished from write or bidirectional flow; it draws its meaning from that contrast, not from any independent definition. The broader field anchors such distinctions within the concept of confidentiality, defined as "preserving authorized restrictions on information access and disclosure." No authoritative source (NIST CSRC glossary, ISO/IEC 27000 series, CNSSI 4009, AICPA, or CIS) defines "information access" as a discrete term of art with its own glossary entry separate from "access" or "access control."verified
Information AgenounMWEa period beginning in the last quarter of the 20th century when information became easily accessible through publications and through the manipulation of information by computers and computer networksverified
information and communication(s) technologynounMWEAny information technology, equipment, or interconnected system or subsystem of equipment that processes, transmits, receives, or interchanges data or information.verified
information and systemsnounMWERefers to information in electronic form (electronic information) during its use, processing, transmission, and storage and systems that use, process, transmit or transfer, and store information or that produce, manufacture, or distribute products.verified
information assetnounMWEData and the associated software and infrastructure used to process, transmit, and store information or to produce, manufacture, or distribute products.verified
information assurancenounMWEMeasures that protect and defend information and information systems by ensuring their availability, integrity, authentication, confidentiality, and non-repudiation. These measures include providing for restoration of information systems by incorporating protection, detection, and reaction capabilities.verified
Information Assurance CompliancnounMWEIn the NICE Workforce Framework, cybersecurity work where a person: Oversees, evaluates, and supports the documentation, validation, and accreditation processes necessary to assure that new IT systems meet the organization's information assurance and security requirements; ensures appropriate treatment of risk, compliance, and assurance from internal and external perspectives.verified
Information Assurance ComponentnounMWEAn application (hardware and/or software) that provides one or more Information Assurance capabilities in support of the overall security and operational objectives of a system.verified
Information Assurance ProfessionalnounMWEIndividual who works IA issues and has real-world experience plus appropriate IA training and education commensurate with their level of IA responsibility.verified
Information Assurance Vulnerability AlertnounMWENotification that is generated when an Information Assurance vulnerability may result in an immediate and potentially severe threat to DoD systems and information; this alert requires corrective action because of the severity of the vulnerability risk.verified
Information DomainnounMWEA three-part concept for information sharing, independent of, and across information systems and security domains that 1) identifies information sharing participants as individual members, 2) contains shared information objects, and 3) provides a security policy that identifies the roles and privileges of the members and the protections required for the information objects.verified
Information EnvironmentnounMWEAggregate of individuals, organizations, and/or systems that collect, process, or disseminate information, also included is the information itself.verified
Information Flow ControlnounMWEProcedure to ensure that information transfers within a system are not made in violation of the security policy.verified
information flow control policynounMWEA security or privacy policy construct that specifies the authorized paths and directions along which data may move—within a system, between systems, or across security/privacy domains—based on the characteristics of the information itself or its path rather than on who holds access rights to it. It is distinct from access control policy in that it governs *where* information may travel rather than *who* may read it, and it is typically enforced at boundary devices (firewalls, guards, proxies, data-loss-prevention tools) through rule sets keyed to data classification labels, content, or network attributes. In practice, organizations define organization-specific information flow control policies and then implement enforcement mechanisms—such as one-way data diodes, content filters, or export restrictions—to ensure transfers never violate those policies.verified
information flow enforcementnounMWEA security control category that governs whether and how data may move between subjects, objects, systems, or trust domains — distinct from access control, which concerns *who* may read or write information. Information flow enforcement regulates *where* information is allowed to travel within a system and between systems, as opposed to who is allowed to access the information, and without explicit regard to subsequent accesses to that information. Organizations employ information flow control policies and enforcement mechanisms to control flows between designated sources and destinations; flow control is based on the characteristics of the information and/or the information path, and enforcement occurs in boundary protection devices that use rule sets, packet-filtering on header information, or message-filtering based on content. Enforcement techniques include prohibiting transfers between connected systems, verifying write permissions before accepting information from another security or privacy domain, employing hardware mechanisms to enforce one-way flows, and implementing trustworthy regrading mechanisms to reassign security or privacy attributes and labels.verified
Information Input ComponentnounMWEOne of the three components of a model. This component delivers assumptions and data to the model.verified
Information ManagementnounMWEThe planning, budgeting, manipulating, and controlling of information throughout its life cycle.verified
Information MeasurenounMWEa system of measurement of information based on the probabilities of the events that convey informationverified
Information OperationsnounMWEThe integrated employment of the core capabilities of electronic warfare, computer network operations, psychological operations, military deception, and operations security, in concert with specified supporting and related capabilities, to influence, disrupt, corrupt, or usurp adversarial human and automated decision-making process, information, and information systems while protecting our own.verified
Information OwnernounMWEOfficial with statutory or operational authority for specified information and responsibility for establishing the controls for its generation, collection, processing, dissemination, and disposal. See Information Steward.verified
information pathnounMWE** A property of a data flow used as a basis for access-control decisions about where information is permitted to travel within or between systems. It is distinguished from the *content* of the information itself: information flow control regulates where information is allowed to travel within an information system and between information systems, as opposed to who is allowed to access the information. Specifically, organizations use information flow control policies and enforcement mechanisms to control the flow of information between designated sources and destinations — such as networks, individuals, and devices — within systems and between interconnected systems, with flow control based on characteristics of the information or the information path. In practice, the information path serves as one of two alternative criteria (the other being content characteristics) against which boundary protection devices such as encrypted tunnels, routers, gateways, and firewalls apply rule sets or configuration settings to restrict system services, provide packet-filtering based on header information, or provide message-filtering based on message content.
**VERDICT:** TERM_OF_ART
---
**Souverified
Information ProcessingnounMWEthe sciences concerned with gathering, manipulating, storing, retrieving, and classifying recorded informationverified
Information Processing SystemnounMWEAny operation or set of operations performed on personal data, whether or not by automated meansverified
Information ResourcesnounMWEInformation and related resources, such as personnel, equipment, funds, and information technology. [24]verified
Information Resources ManagementnounMWEThe planning, budgeting, organizing, directing, training, controlling, and management activities associated with the burden, collection, creation, use, and dissemination of information by agencies.verified
Information ReturnnounMWEa return that provides information to the tax collector but does not compute the tax liabilityverified
Information SciencenounMWEthe sciences concerned with gathering, manipulating, storing, retrieving, and classifying recorded informationverified
Information SecuritynounMWEThe protection of information and systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide confidentiality, integrity, and availability. [20]verified
Information Security ArchitectnounMWEIndividual, group, or organization responsible for ensuring that the information security requirements necessary to protect the organization’s core missions and business processes are adequately addressed in all aspects of enterprise architecture including reference models, segment and solution architectures, and the resulting information systems supporting those missions and business processes.verified
Information Security ArchitecturenounMWEAn embedded, integral part of the enterprise architecture that describes the structure and behavior for an enterprise’s security processes, information security systems, personnel and organizational sub-units, showing their alignment with the enterprise’s mission and strategic plans.verified
Information Security AwarenessnounMWEActivities which seek to focus an individual’s attention on an (information security) issue or set of issues.verified
Information Security Continuous MonitoringnounMWEMaintaining ongoing awareness of information security, vulnerabilities, and threats to support organizational risk management decisions. [Note: The terms “continuous” and “ongoing” in this context mean that security controls and organizational risks are assessed and analyzed at a frequency sufficient to support risk-based security decisions to adequately protect organization information.]verified
Information Security Continuous Monitoring ProcessnounMWEA process to: • Define an ISCM strategy; • Establish an ISCM program; • Implement an ISCM program; • Analyze data and Report findings; • Respond to findings; and • Review and Update the ISCM strategy and program.verified
Information Security Continuous Monitoring ProgramnounMWEA program established to collect information in accordance with pre-established metrics, utilizing information readily available in part through implemented security controls.verified
information security controlnounMWEPractices and procedures established to protect information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction in order to provide integrity, confidentiality, and availability.verified
information security eventnounMWEIdentified occurrence of a system, service or network state indicating a possible breach of information security policy or failure of controls, or a previously unknown situation that may be security relevant.verified
information security incidentnounMWEA single or a series of unwanted or unexpected information security events that have a significant probability of compromising business operations and threatening information security.verified
information security policynounMWEThe rules and guidelines of an organization on how to ensure the confidentiality, integrity, and availability of the organization's information.verified
information security procedurenounMWEThe documented series of steps on how to establish and maintain the confidentiality, integrity, and availability of information.verified
information security processnounMWEThe activities associated with establishing and maintaining the confidentiality, integrity, and availability of data and information.verified
information security programnounMWEA documented approach for organizing and directing all activities undertaken to ensure the confidentiality, integrity, and availability of the information held by the organization.verified
Information Security Program PlannounMWEFormal document that provides an overview of the security requirements for an organization-wide information security program and describes the program management controls and common controls in place or planned for meeting those requirements.verified
Information Security risknounMWEThe risk to organizational operations (including mission, functions, image, reputation), organizational assets, individuals, other organizations, and the Nation due to the potential for unauthorized access, use, disclosure, disruption, modification, or destruction of information and/or information systems. See Risk.verified
information security roles and responsibilitiesnounMWEThe position and collection of tasks, duties, obligations that participants undertake to perform the daily and all special tasks in the role of information security.verified
information security strategynounMWEA plan to mitigate risks while complying with legal, statutory, contractual, and internally developed requirements.verified
information security threatnounMWEAny circumstance or event with the potential to adversely impact the measures taken so that information and information systems are protected from unauthorized access, use, disclosure, disruption, modification, or destruction.verified
information security trainingnounMWETraining strives to produce relevant and needed (information) security skills and competencies.verified
information sharingnounMWEThe requirements for information sharing by an IT system with one or more other IT systems or applications, for information sharing to support multiple internal or external organizations, missions, or public programs.verified
Information Sharing and Analysis CentersnounMWEISAC: Information Sharing and Analysis Centersverified
Information Sharing and Analysis OrganizationsnounMWEISAO: Information Sharing and Analysis Organizationsverified
Information Sharing EnvironmentnounMWE1. An approach that facilitates the sharing of terrorism and homeland security information; or 2. ISE in its broader application enables those in a trusted partnership to share, discover, and access controlled information.verified
information sharing forumnounMWEAn assembly in which participants share problems, solutions, updates, and data on topics relevant to its discourse.verified
Information StewardnounMWEIndividual or group that helps to ensure the careful and responsible management of federal information belonging to the Nation as a whole, regardless of the entity or source that may have originated, created, or compiled the information. Information stewards provide maximum access to federal information to elements of the federal government and its customers, balanced by the obligation to protect the information in accordance with the provisions of FISMA and any associated security-related federal policies, directives, regulations, standards, and guidance.verified
Information SuperhighwaynounMWEan extensive electronic network (such as the internet) used for the rapid transfer of sound and video and graphics in digital formverified
Information SystemnounMWEA discrete set of information resources organized for the collection, processing, maintenance, use, sharing, dissemination, or disposition of information. [24]verified
information system componentnounMWEA discrete, identifiable information technology asset (e.g., hardware, software, firmware) that represents a building block of an information system. Information system components include commercial information technology products.verified
Information System Contingency PlannounMWEManagement policy and procedures designed to maintain or restore business operations, including computer operations, possibly at an alternate location, in the event of emergencies, system failures, or disasters.verified
Information System Life CyclenounMWEThe phases through which an information system passes, typically characterized as initiation, development, operation, and termination (i.e., sanitization, disposal and/or destruction).verified
Information System OwnernounMWEOfficial responsible for the overall procurement, development, integration, modification, or operation and maintenance of an information system.verified
Information System Owner or Program ManagernounMWEOfficial responsible for the overall procurement, development, integration, modification, or operation and maintenance of an information system.verified
information system resiliencenounMWEThe ability of an information system to continue to: (i) operate under adverse conditions or stress, even if in a degraded or debilitated state, while maintaining essential operational capabilities; and (ii) recover to an effective operational posture in a time frame consistent with mission needs.verified
Information System Security OfficernounMWEIndividual assigned responsibility by the senior agency information security officer, authorizing official, management official, or information system owner for ensuring that the appropriate operational security posture is maintained for an information system or program.verified
Information System-Related Security RisksnounMWEInformation system-related security risks are those risks that arise through the loss of confidentiality, integrity, or availability of information or information systems and consider impacts to the organization (including assets, mission, functions, image, or reputation), individuals, other organizations, and the Nation.verified
Information Systems SecuritynounMWEProtection of information systems against unauthorized access to or modification of information, whether in storage, processing, or transit, and against the denial of service to authorized users, including those measures necessary to detect, document, and counter such threats.verified
Information Systems Security EngineernounMWEIndividual assigned responsibility for conducting information system security engineering activities.verified
Information Systems Security EngineeringnounMWEProcess of capturing and refining information protection requirements to ensure their integration into information systems acquisition and information systems development through purposeful security design or configuration.verified
Information Systems Security Equipment ModificationnounMWEModification of any fielded hardware, firmware, software, or portion thereof, under NSA configuration control. There are three classes of modifications: mandatory (to include human safety); optional/special mission modifications; and repair actions. These classes apply to elements, subassemblies, equipment, systems, and software packages performing functions such as key generation, key distribution, message encryption, decryption, authentication, or those mechanisms necessary to satisfy security policy, labeling, identification, or accountability.verified