Glossary terms and definitions last updated: August 26, 2026
This Glossary is an aggregation of terms and definitions specified in NIST's cybersecurity and privacy standards, guidelines, and other technical publications, and in CNSSI 4009-2022. These should not be viewed as "official" or "preferred" definitions for a particular subject area, sector, or industry, with the exception that some definitions are cited directly from U.S. laws, the Code of Federal Regulations, Presidential Directives, etc.
Each term-definition pair must be understood within the context of its Source document. Because of this, many terms have multiple, varying definitions that reflect the different contexts of various publications written at different times.
Per the Sept. 29, 2026, Executive Order on Inaugurating the Era of Super Intelligence, NIST is working to update its communications to incorporate the term “super intelligence” as directed. When that new term is explicitly defined/cited in a NIST technical series final publication, it will be added to this glossary. For other terminology in that field see this other glossary.
For more background about this Glossary, see NISTIR 7298 Rev. 3.
Download the Glossary in JSON format (updated daily at 6:15 pm ET; see metadata).
* "Relevance" merely indicates the search engine's score for a document. It is based on the search parameters and information in the document's detailed record.