196 Security terms
Showing 61–120, alphabetical
-
Account Visibility
Account visibility refers to the ability to see and understand all user accounts within an organization's IT systems. This includes…
-
Adaptive Access
Adaptive access is a security approach that dynamically adjusts a user's permissions and authentication requirements based on real-time context. It…
-
Adaptive Authentication
Adaptive authentication is a security method that adjusts the level of authentication required based on various risk factors. It evaluates…
-
Adaptive Control
Adaptive control in cybersecurity refers to security systems that automatically adjust their defenses in response to changing threats and environmental…
-
Adaptive Policy
Adaptive policy is a cybersecurity approach that dynamically adjusts security controls and access permissions based on real-time context. It considers…
-
Adaptive Risk
Adaptive risk is a dynamic approach to managing security threats. It involves continuously assessing and responding to risks as they…
-
Adaptive Security
Adaptive security is a cybersecurity approach that continuously monitors, analyzes, and responds to threats in real time. Unlike traditional static…
-
Advanced Persistent Threat
An Advanced Persistent Threat (APT) is a type of cyberattack where an unauthorized party gains access to a network and…
-
Advanced Threat
An advanced threat refers to a sophisticated and persistent cyberattack. These attacks are typically conducted by highly skilled adversaries, often…
-
Adversary
An adversary in cybersecurity refers to any entity that intends to cause harm to an organization's information systems, networks, or…
-
Adversary Behavior
Adversary behavior refers to the observable actions, tactics, techniques, and procedures that cyber attackers employ when attempting to compromise or…
-
Adversary Capability
Adversary capability describes the specific skills, tools, and resources that a threat actor or group can use to conduct cyberattacks.…
-
Adversary Emulation
Adversary emulation is a security testing method that mimics the actions of specific, known threat actors. It involves replicating their…
-
Adversary Intent
Adversary intent refers to the specific goals, motivations, and desired outcomes an attacker aims to achieve through a cyber operation.…
-
Adversary Simulation
Adversary simulation is a cybersecurity exercise that emulates the tactics, techniques, and procedures TTPs of known threat actors. Its purpose…
-
Anomaly Analysis
Anomaly analysis is a cybersecurity process that identifies unusual activities or data patterns that do not conform to expected behavior.…
-
Anomaly Baseline
An anomaly baseline is a reference point representing normal or expected behavior within a system, network, or user activity. In…
-
Anomaly Classification
Anomaly classification is a cybersecurity process that identifies and categorizes unusual activities or data patterns that deviate significantly from established…
-
Anomaly Confidence
Anomaly confidence is a metric indicating the likelihood that a detected event or behavior truly deviates from normal patterns, rather…
-
Anomaly Correlation
Anomaly correlation is a security analytics technique that identifies unusual patterns or deviations from normal behavior across various data sources.…
-
Anomaly Detection
Anomaly detection is a cybersecurity process that identifies unusual patterns or behaviors in network traffic, system logs, or user activity.…
-
Anomaly Intelligence
Anomaly Intelligence is a cybersecurity approach that uses data analysis to identify unusual patterns or behaviors that deviate from a…
-
Anomaly Monitoring
Anomaly monitoring is a cybersecurity process that identifies unusual activities or deviations from normal system behavior. It uses baselines of…
-
Anomaly Response
Anomaly response is the process of identifying and reacting to unusual or unexpected activities within a computer system or network.…
-
Anomaly Risk
Anomaly risk is the potential for unexpected or unusual patterns in data or system behavior to signal a security threat.…
-
Anomaly Scoring
Anomaly scoring is a cybersecurity technique that assigns a numerical value or score to events or behaviors that deviate from…
-
Anomaly Threshold
An anomaly threshold is a predefined limit or boundary used in cybersecurity systems to identify unusual activity. When system behavior…
-
Anomaly Visibility
Anomaly visibility refers to the capability of security systems to identify and highlight unusual or unexpected activities within an IT…
-
Asset Accountability
Asset accountability is the practice of assigning clear ownership and responsibility for an organization's assets throughout their lifecycle. This includes…
-
Asset Classification
Asset classification is the process of categorizing an organization's information and physical assets based on their sensitivity, value, and criticality.…
-
Asset Dependency
Asset dependency describes the relationship where the proper functioning of one IT asset relies on the availability or performance of…
-
Asset Discovery
Asset discovery is the process of identifying and cataloging all hardware and software assets connected to or present within an…
-
Asset Exposure
Asset exposure in cybersecurity refers to the extent to which an organization's valuable digital or physical assets are susceptible to…
-
Asset Governance
Asset governance involves establishing and enforcing policies and procedures for managing an organization's assets throughout their lifecycle. This includes identifying,…
-
Asset Inventory
Asset inventory is the process of identifying and documenting all hardware, software, and data assets within an organization's environment. This…
-
Asset Ownership
Asset ownership in cybersecurity refers to formally assigning responsibility for an information asset to a specific individual or department. This…
-
Asset Posture
Asset posture describes the current security status of an organization's digital and physical assets. This includes their configuration, known vulnerabilities,…
-
Asset Risk
Asset risk refers to the potential for loss, damage, or compromise of an organization's valuable assets. These assets can be…
-
Asset Security
Asset security involves safeguarding an organization's critical resources, both tangible and intangible, from various threats. This includes protecting data, systems,…
-
Asset Trust
Asset trust refers to the verified confidence an organization has in the integrity, authenticity, and reliability of its digital and…
-
Asset Visibility
Asset visibility refers to the ability to identify, track, and monitor all hardware and software assets connected to an organization's…
-
Assurance
Assurance in cybersecurity refers to the confidence that systems, data, and processes meet specified security requirements and operate as intended.…
-
Assurance Attestation
Assurance attestation involves an independent third party evaluating an organization's security controls, processes, and compliance with specific standards or regulations.…
-
Assurance Confidence
Assurance confidence refers to the level of trust an organization or individual has that its cybersecurity measures are effective and…
-
Assurance Confidence Level
Assurance Confidence Level measures the degree of certainty that an organization's security controls are operating effectively and achieving their intended…
-
Assurance Coverage
Assurance coverage refers to the extent and depth of security controls implemented across an organization's systems, applications, and data. It…
-
Assurance Evidence
Assurance evidence consists of documented information that demonstrates security controls are implemented correctly and operating effectively. It provides verifiable proof…
-
Assurance Framework
An Assurance Framework is a structured system of policies, processes, and controls designed to provide confidence that an organization's security…
-
Assurance Maturity
Assurance Maturity refers to an organization's developed capability to consistently ensure that its systems, data, and services meet defined security…
-
Assurance Posture
Assurance posture refers to an organization's verifiable confidence in its security controls and processes. It quantifies the degree to which…
-
Assurance Reporting
Assurance reporting involves systematically collecting, analyzing, and presenting evidence to confirm that an organization's security controls and processes are effective…
-
Attack
In cybersecurity, an attack refers to any malicious action taken to disrupt, disable, destroy, or gain unauthorized access to a…
-
Attack Assumption
An attack assumption is a statement made during threat modeling that describes a potential adversary's capabilities, motivations, and resources. It…
-
Attack Attribution
Attack attribution is the process of identifying the origin of a cyberattack and linking it to a specific individual, group,…
-
Attack Awareness
Attack awareness is the ability of an organization and its personnel to recognize, understand, and anticipate potential cyber threats and…
-
Attack Chain
An attack chain is a series of interconnected stages an attacker follows to compromise a system or network. It outlines…
-
Attack Chaining
Attack chaining is a method where cyber attackers link together several individual vulnerabilities or misconfigurations to create a more complex…
-
Attack Complexity
Attack complexity refers to the level of effort and resources an attacker must expend to successfully compromise a system or…
-
Attack Containment
Attack containment is a critical phase in incident response that focuses on limiting the scope and impact of a cyberattack.…
-
Attack Correlation
Attack correlation is the process of analyzing security event data from multiple sources to identify patterns and relationships that indicate…