Standards — Election Security Glossary
279 election security terms in the Standards category, with definitions sourced from NIST, CISA, EAC, and 30+ authoritative documents.
Browse all 279 terms in Standards
Long Title
The descriptive title of a COMSEC item.
Low Impact System
An information system in which all three security properties (i.e., confidentiality, integrity, and availability) are assigned a FIPS PUB 199 potential impact value of low.
Manual Cryptosystem
Cryptosystem in which the cryptographic processes are performed without the use of crypto-equipment or auto-manual devices.
Moderate Impact System
An information system in which at least one security objective (i.e., confidentiality, integrity, or availability) is assigned a FIPS PUB 199 potential impact value of moderate…
National Information Assurance Partnership (niap)
A U.S. Government initiative established to promote the use of evaluated information systems products and champion the development and use of national and international standards…
Nsa Approved Cryptography
Cryptography that consists of: (i) an approved algorithm; (ii) an implementation that has been approved for the protection of classified information in a particular environment;…
Optional Modification
National Security Agency (NSA)-approved modification not required for universal implementation by all holders of a COMSEC end-item.
Probability Of Occurrence
See likelihood of occurrence. Source: NIST IR 7298 Rev 2.
Protection Philosophy
Informal description of the overall design of an information system delineating each of the protection mechanisms employed.
Protection Profile
A minimal, baseline set of requirements targeted at mitigating well defined and described threats.
Pseudorandom Number Generator (prng)
A deterministic computational process that has one or more inputs called "seeds", and it outputs a sequence of values that appears to be random according to specified statistical…
Record
1. (noun) "Preserved evidence of activities performed or results achieved (e.g., forms, reports, test results)." VVSG.
By ESG Editorial Team · Drawing on NIST, IEEE, the EAC, and 25+ sources on election standards and best practices
Standards are the technical and procedural benchmarks that election systems and practices are measured against. They include the federal Voluntary Voting System Guidelines (VVSG), state-level certification criteria, professional and industry best practices, and the consensus documents published by standards organizations like NIST and IEEE.
Why this category matters for election security is that standards give the field a shared reference point. Without them, every jurisdiction would have to invent its own criteria, and there would be no way to compare systems, procedures, or outcomes across jurisdictions. With them, an election official in one county can look at a standard and know what is expected, and a federal agency can audit a state against a known baseline.
Standards are not law. They are voluntary until adopted. The VVSG, for example, only becomes binding when incorporated by reference into a state's certification process or a federal procurement rule. But the voluntary nature of standards is misleading. In practice, adherence to recognized standards is often treated as evidence of due diligence, and departures from them invite scrutiny.
The terminology in this category covers both the standards themselves and the bodies that create them. The concepts here describe a layered system: international standards, federal expectations, state requirements, and local procedures, all building on each other.
How These Terms Relate
These concepts together describe the standards ecosystem that supports election administration. The terminology covers both the standards themselves (VVSG, the NIST Cybersecurity Framework, IEEE standards) and the bodies that create them. The unifying theme is that standards provide a shared reference point: a way for a county, a state, and a federal agency to speak a common language about what good election security looks like.
Related categories
50 terms
The process of testing systems against these standards.
Compliance5 terms
The practice of meeting these standards in routine operations.
Voting Systems1,792 terms
The systems that are certified against VVSG and other technical standards.
Auditing46 terms
The reviews that confirm ongoing adherence to standards.
Can't find the right category?
Search the full glossary, or browse every term alphabetically instead.