Defined term

External Information System Service

External Information System Service: An information system service that is implemented outside of the authorization boundary of the organizational information…

Verified
📚 Multi-Source
Cybersecurity

Definition

An information system service that is implemented outside of the authorization boundary of the organizational information system (i.e., a service that is used by, but not a part of, the organizational information system) and for which the organization typically has no direct control over the application of required security controls or the assessment of security control effectiveness.

Alternative Definitions

Definition 2

An information system service that is implemented outside of the authorization boundary of the organizational information system (i.e., a service that is used by, but not a part of, the organizational information system) and for which the organization typically has no direct control over the application of required security controls or the assessment of security control effectiveness. (SP 800-53; SP 800-37; CNSSI-4009((NISTIR)

Source: The Cyber GlossaryType: external

Sources

1
Committee on National Security Systems Glossary CNSSI 4009-2015
View Source
2
The Cyber Glossary
View Source

Continue Research

Browse the full glossary for adjacent terms, or subscribe for updates when definitions and sources are expanded.