home/glossary/insider threat

insider threat

nounid 163409·updated Aug 30, 2026
verified

The threat that an insider will use their authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.

MWE

Source

document
NIST Special Publication 800 NIST SP 800-172r3 Enhanced Security Requirements for Protecting Controlled Unclassified Information
publisher
NIST
found in
Appendix B. Glossary
discovery
AuthoritativeImport

Proposed during multiword review of this document in the CKI mapping queue.

Attested in

NIST SP 800-171 Rev 3 - Protecting CUI in Nonfederal Systems6 citations · 6 defined by this document · observed 2026-09-01 under anchor/0.9/36451/2026-09-01
03.01.07.b ¶ 203.02.01.a.303.02.01.b ¶ 203.02.01.b ¶ 203.02.01.b ¶ 33.2.2 ¶ 83

Classifications

Entity Type

Threat95%rule-basedr:entity.threat.actor.v1

Sensitivity

Regulated85%llm-generatedllm:claude-haiku-4-5

Information Class

Cui70%llm-generatedllm:claude-haiku-4-5

Variants

No variants recorded
This term has no surface-form variants in the lexicon yet, so it tags only its canonical form.

Framework definitions

NIST SP 800-172r31 senseview framework →
§1 · glossary
The threat that an insider will use their authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.
Attribution from the CKI glossary mapping stage (glossary)
NIST SP 800-171r31 senseview framework →
§1 · glossary
The threat that an insider will use her/his authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.
Attribution from the CKI glossary mapping stage (glossary)
Legacy lexicon import1 senseview framework →
§1 · legacy_primary
The threat that an insider will use their authorized access, wittingly or unwittingly, to do harm to the security of the United States. This threat can include damage to the United States through espionage, terrorism, unauthorized disclosure, or through the loss or degradation of departmental resources or capabilities.
DR-088 backfill from the noun definition column

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.