home/glossary/Intrusion detection system

Intrusion detection system

nounid 3019·updated Aug 30, 2026
verified· unreviewed

Inspects network and host security activity to identify suspicious patterns that may indicate a network or system attack

MWE

Attested in

NIST SP 800-171 Rev 3 - Protecting CUI in Nonfederal Systems2 citations · 2 machine-matched · observed 2026-09-01 under anchor/0.9/36451/2026-09-01
03.04.06.d ¶ 203.14.06.c ¶ 2

Classifications

Entity Type

Capability0%rule-basedmulti_axis_classifier_low_confidence.v1

Sensitivity

85%llm-generatedllm:claude-haiku-4-5

Information Class

90%llm-generatedllm:claude-haiku-4-5

Variants

acronym
IDS
alternatephrasing
Intrusion Detection Systems
plural
Intrusion detection systemsIntrusion Detection Systemses
possessive
Intrusion detection system'sIntrusion Detection Systems's
pluralpossessive
Intrusion detection systems'Intrusion Detection Systemses'

Framework definitions

ISACA Cybersecurity Glossary1 senseview framework →
§1
Inspects network and host security activity to identify suspicious patterns that may indicate a network or system attack
NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
Hardware or software product that gathers and analyzes information from various areas within a computer or a network to identify possible security breaches, which include both intrusions (attacks from outside the organizations) and misuse (attacks from within the organizations.)
CNSSI-4009 (Glossary of Information Assurance Terms)1 senseview framework →
§1
Hardware or software product that gathers and analyzes information from various areas within a computer or a network to identify possible security breaches, which include both intrusions (attacks from outside the organizations) and misuse (attacks from within the organizations.)
NIST SP 800-171r31 senseview framework →
§1 · attested_usage_pack_match
No definition is given in NIST SP 800-171r3. The term is attested in use at 2 citations in that document; a definition is pending curation.
Increment 2: attested in 800-171r3 without a glossary definition.
Legacy lexicon import1 senseview framework →
§1 · legacy_primary
Inspects network and host security activity to identify suspicious patterns that may indicate a network or system attack
DR-088 backfill from the noun definition column

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.