Category Overview

Cybersecurity — Election Security Glossary

1,851 election security terms in the Cybersecurity category, with definitions sourced from NIST, CISA, EAC, and 30+ authoritative documents.

Browse all 1,851 terms in Cybersecurity

Type 3 Key

Used in a cryptographic device for the protection of unclassified sensitive information, even if used in a Type 1 or Type 2 product.

Medium consensus1 source

Type 3 Product

Unclassified cryptographic equipment, assembly, or component used, when appropriately keyed, for encrypting or decrypting unclassified sensitive U.S.

Medium consensus1 source

Type 4 Key

Used by a cryptographic device in support of its Type 4 functionality, i.e., any provision of key that lacks U.S.

Medium consensus1 source

Type 4 Product

Unevaluated commercial cryptographic equipment, assemblies, or components that neither NSA nor NIST certify for any government usage.

Medium consensus1 source

Type Accreditation

A form of accreditation that is used to authorize multiple instances of a major application or general support system for operation at approved locations with the same type of…

Medium consensus1 source

Type Accreditation (c.f.d.)

A form of accreditation that is used to authorize multiple instances of a major application or general support system for operation at approved locations with the same type of…

Medium consensus1 source

Type Authorization

An official authorization decision to employ identical copies of an information system or subsystem (including hardware, software, firmware, and/or applications) in specified…

Medium consensus1 source

Typosquatting

a form of cybersquatting (sitting on sites under someone else's brand or copyright) that targets Internet users who incorrectly type a website address into their web browser.

Medium consensus1 source

U.s. Citizenship And Immigration Services (cis)

U.S. Citizenship and Immigration Services (USCIS) is the federal agency within the Department of Homeland Security (DHS) that oversees lawful immigration to the United States.

Medium consensus1 source

U.s. Customs And Border Protection (cbp)

U.S. Customs and Border Protection (CBP) is the largest federal law enforcement agency within the Department of Homeland Security (DHS), charged with managing, controlling, and…

Medium consensus1 source

U.s. Government Configuration Baseline – (

USGCB) The United States Government Configuration Baseline (USGCB) provides security configuration baselines for Information Technology products widely deployed across the federal…

Medium consensus1 source

U.s. National Interests

Matters of vital interest to the United States to include national security, public safety, national economic security, the safe and reliable functioning of "critical…

Medium consensus1 source

By ESG Editorial Team · Drawing on NIST, CISA, EAC, and 29 authoritative sources on election security

Election infrastructure, the systems, networks, and processes that support voter registration, ballot production, and vote counting, was formally designated critical infrastructure by the U.S. Department of Homeland Security in 2017. That designation brought election security into the same federal framework as power grids and water systems, and with it came an expanded vocabulary. The terminology of cybersecurity now sits alongside the established language of election administration, and officials, journalists, and researchers must navigate both.

The defining characteristic of election cybersecurity is that the primary threat is not financial loss but loss of integrity. Confidentiality matters. Voter registration data is sensitive. But the most significant risk is the possibility that data or systems are altered without detection. An election system that produces incorrect results because of a software vulnerability, a malware infection, or a supply chain compromise undermines public confidence in ways that have no direct analogue in commercial cybersecurity.

This shapes how security controls are prioritized. Encryption protects the integrity and confidentiality of data in transit and at rest. Multi-factor authentication prevents unauthorized access to election management systems even when passwords are compromised. Penetration testing identifies vulnerabilities before adversaries do. These are not theoretical measures. CISA advisories and post-election after-action reports consistently document phishing campaigns targeting election officials, ransomware incidents affecting county government networks, and reconnaissance activity against voter registration systems.

Incident response planning is equally central. Commercial organizations can often absorb a security incident and recover over days or weeks. Election officials do not have that flexibility: elections run on fixed legal deadlines, and a security incident on election day requires a response plan that has been tested, refined, and communicated in advance. The incident response vocabulary (indicators, containment, remediation, and communication protocols) is operational knowledge for election security teams, not abstract theory.

Supply chain security has emerged as a particular concern for election systems, which incorporate hardware and software components from multiple vendors. A compromise introduced at any point in a supply chain (a backdoored firmware update or a malicious component in voting machine hardware) can propagate to the final product in ways that are difficult to detect through standard testing. The terms in this category reflect that expanded attack surface: from advanced persistent threats sponsored by nation-states to commodity malware deployed by opportunistic criminals.

Key Concepts

Cybersecurity

The practice of protecting election systems, networks, and data from digital attacks, unauthorized access, and disruption.

Encryption

A mathematical process that renders data unreadable without the corresponding key, protecting ballot data and voter records in transit and at rest.

Malware

Malicious software designed to disrupt, damage, or gain unauthorized access to computer systems, including election management infrastructure.

Phishing

Deceptive communications, typically email, crafted to trick election officials into revealing credentials or installing malicious software.

Multi Factor Authentication

An authentication method requiring two or more independent verification factors, a key control for protecting election management systems.

Vulnerability

A weakness in a system, process, or configuration that could be exploited to compromise the security or integrity of election infrastructure.

Ransomware

Malware that encrypts victim data and demands payment for the decryption key; a documented threat to county government networks supporting elections.

Penetration Testing

Authorized simulation of cyberattacks conducted to identify security weaknesses in election systems before adversaries can exploit them.

Incident Response Plan

Documented procedures for detecting, containing, and recovering from security incidents, essential for election officials operating under fixed legal deadlines.

Supply Chain Attack

A cyberattack that compromises less-secure elements of a supply chain (hardware, firmware, or software) to ultimately target the election system using those components.

How These Terms Relate

These concepts form a layered security posture for election infrastructure. Vulnerabilities are the foundation: weaknesses that exist in any system become the entry points adversaries exploit. Malware, phishing, and supply chain attacks are the methods used to exploit those weaknesses. Each targets a different layer of election operations, from official email accounts to the voting systems themselves. Encryption, multi-factor authentication, and penetration testing are defensive controls applied before an incident occurs to reduce the attack surface and limit the damage a successful intrusion can cause. When defenses are breached and a security event (such as a ransomware deployment) occurs, the incident response plan governs how officials detect, contain, and communicate about the situation. Cybersecurity as a discipline integrates all of these elements into a coherent operational posture: one that accounts for the unique pressures of administering elections on fixed legal deadlines and under intense public scrutiny.

Related categories

Can't find the right category?

Search the full glossary, or browse every term alphabetically instead.