Open Security Environment
- An enviornment that includes those systems in which one of the following conditions holds true: a. Application developers (including maintainers) do not have sufficient clearance or authorization to provide an acceptable presumption that they have not introduced malicious logic. b. Configuration control does not provide sufficient assurance that applications are protected against the introduction of malicious logic prior to and during the operation of system applications. (CSC-STD-004-85;; CSC-STD-003-85;; NCSC-WA-001-85;)