Red Key

Primary definition

Key that has not been encrypted in a system approved by NSA for key encryption or encrypted key in the presence of its associated key encryption key (KEK) or transfer key encryption key (TrKEK). Encrypted key in the same fill device as its associated KEK or TrKEK is considered unencrypted. (RED key is also known as unencrypted key). Such key is classified at the level of the data it is designed to protect. See BLACK data and encrypted key. Source: CNSSI No. 4005 (COMSEC)

Also known asunencrypted key
1 sources cited4 related termsReviewed Aug 10, 2026
Committee on National Security Systems Glossary CNSSI 4009-2015View source
People also ask

What is red key?

The term Red Key refers to cryptographic keying material that is unencrypted or in plaintext-equivalent form and therefore requires strict protection against disclosure or unauthorized access. It gives election, security, legal, or technical readers a specific label for the concept rather than a broader everyday meaning.

How is red key used in cryptography or COMSEC?

In practice, Red Key is applied to the technical or security purpose captured by its definition: cryptographic keying material that is unencrypted or in plaintext-equivalent form and therefore requires strict protection against disclosure or unauthorized access. Organizations combine that function with documented procedures, authorized access, testing, monitoring, and controls appropriate to the system.

Why does red key need security controls?

Understanding Red Key matters because the concept can affect security, reliability, auditability, or trusted operation. In this glossary context, it refers to cryptographic keying material that is unencrypted or in plaintext-equivalent form and therefore requires strict protection against disclosure or unauthorized access.

Understand more election terms clearly

Get one important election term explained each week, with authoritative sources, practical context and related definitions.

Free. One useful email each week. Unsubscribe anytime.Learn more about the ESG newsletter →
CNSSGC

Key that has not been encrypted in a system approved by NSA for key encryption or encrypted key in the presence of its associated key encryption key (KEK) or transfer key encryption key (TrKEK). Encrypted key in the same fill device as its associated KEK or TrKEK is considered unencrypted. (RED key is also known as unencrypted key). Such key is classified at the level of the data it is designed to protect. See BLACK data and encrypted key. Source: CNSSI No. 4005 (COMSEC)

Committee on National Security Systems Glossary CNSSI 4009-2015 · 2024

Cite this term

Permanent URL · stable across revisions
Election Security Glossary. (2026). Red Key. In Election Security Glossary. Retrieved August 21, 2026, from https://electionsecurityglossary.com/glossary/red-key

Sources

1 cited · last checked Aug 10, 2026

01

Committee on National Security Systems Glossary CNSSI 4009-2015
Committee on National Security Systems Glossary CNSSI 4009-2015

Single-source

View source

Get the weekly election term

Receive one cited, source-backed election explanation in your inbox each week.

Get election terms explained weekly →
Free · Nonpartisan · Unsubscribe anytime.
Continue Research

Keep going from here

Three ways to go deeper on cybersecurity and adjacent terminology.