Category Overview

Standards — Election Security Glossary

279 election security terms in the Standards category, with definitions sourced from NIST, CISA, EAC, and 30+ authoritative documents.

Browse all 279 terms in Standards

Long Title

The descriptive title of a COMSEC item.

Medium consensus2 sources

Low Impact System

An information system in which all three security properties (i.e., confidentiality, integrity, and availability) are assigned a FIPS PUB 199 potential impact value of low.

Medium consensus2 sources

Manual Cryptosystem

Cryptosystem in which the cryptographic processes are performed without the use of crypto-equipment or auto-manual devices.

Medium consensus2 sources

Moderate Impact System

An information system in which at least one security objective (i.e., confidentiality, integrity, or availability) is assigned a FIPS PUB 199 potential impact value of moderate…

Medium consensus2 sources

National Information Assurance Partnership (niap)

A U.S. Government initiative established to promote the use of evaluated information systems products and champion the development and use of national and international standards…

High consensus2 sources

Nsa Approved Cryptography

Cryptography that consists of: (i) an approved algorithm; (ii) an implementation that has been approved for the protection of classified information in a particular environment;…

Medium consensus2 sources

Optional Modification

National Security Agency (NSA)-approved modification not required for universal implementation by all holders of a COMSEC end-item.

Medium consensus2 sources

Probability Of Occurrence

See likelihood of occurrence. Source: NIST IR 7298 Rev 2.

Medium consensus2 sources

Protection Philosophy

Informal description of the overall design of an information system delineating each of the protection mechanisms employed.

High consensus2 sources

Protection Profile

A minimal, baseline set of requirements targeted at mitigating well defined and described threats.

Low consensus2 sources

Pseudorandom Number Generator (prng)

A deterministic computational process that has one or more inputs called "seeds", and it outputs a sequence of values that appears to be random according to specified statistical…

Low consensus2 sources

Record

1. (noun) "Preserved evidence of activities performed or results achieved (e.g., forms, reports, test results)." VVSG.

Medium consensus2 sources

By ESG Editorial Team · Drawing on NIST, IEEE, the EAC, and 25+ sources on election standards and best practices

Standards are the technical and procedural benchmarks that election systems and practices are measured against. They include the federal Voluntary Voting System Guidelines (VVSG), state-level certification criteria, professional and industry best practices, and the consensus documents published by standards organizations like NIST and IEEE.

Why this category matters for election security is that standards give the field a shared reference point. Without them, every jurisdiction would have to invent its own criteria, and there would be no way to compare systems, procedures, or outcomes across jurisdictions. With them, an election official in one county can look at a standard and know what is expected, and a federal agency can audit a state against a known baseline.

Standards are not law. They are voluntary until adopted. The VVSG, for example, only becomes binding when incorporated by reference into a state's certification process or a federal procurement rule. But the voluntary nature of standards is misleading. In practice, adherence to recognized standards is often treated as evidence of due diligence, and departures from them invite scrutiny.

The terminology in this category covers both the standards themselves and the bodies that create them. The concepts here describe a layered system: international standards, federal expectations, state requirements, and local procedures, all building on each other.

How These Terms Relate

These concepts together describe the standards ecosystem that supports election administration. The terminology covers both the standards themselves (VVSG, the NIST Cybersecurity Framework, IEEE standards) and the bodies that create them. The unifying theme is that standards provide a shared reference point: a way for a county, a state, and a federal agency to speak a common language about what good election security looks like.

Related categories

Can't find the right category?

Search the full glossary, or browse every term alphabetically instead.