home/glossary/high-risk individual

high-risk individual

nounverified·updated Aug 30, 2026

A classification applied to a person — typically a user, employee, contractor, or other organizational insider — for whom credible evidence indicates a significant likelihood of causing harm to organizational systems, data, assets, or operations, either through malicious intent or as a vector adversaries can exploit. The category is operationalized in access-control and incident-response policy: once someone is designated high-risk, controls such as time-bounded account disablement, heightened monitoring, and expedited notification of relevant personnel are triggered. Across the field the designation is context-driven and organization-defined, covering a spectrum from the disgruntled insider with demonstrated intent to the compromised account holder through whom external threat actors act.

MWELegacy lexicon import

Senses

NIST SP 800-171r3attested usage reviewer confirmed

No definition is given in NIST SP 800-171r3. The term is attested in use at 1 citation in that document; a definition is pending curation.

Classifications

Entity Type

Identity92%llm-generatedllm:claude-haiku-4-5
?unassignedlast reviewed

Sensitivity

Restricted85%llm-generatedllm:claude-haiku-4-5
?unassignedlast reviewed

Information Class

Pii78%llm-generatedllm:claude-haiku-4-5
?unassignedlast reviewed

Variants

plural
high-risk individuals
possessive
high-risk individual's
pluralpossessive
high-risk individuals'