160 Security terms

Showing 61–120, alphabetical

  1. Incident Blast Radius

    Incident blast radius refers to the total extent of damage or impact caused by a security incident. It measures how…

  2. Incident Classification

    Incident classification is the process of categorizing cybersecurity incidents based on predefined criteria. These criteria typically include the type of…

  3. Incident Communications

    Incident communications refer to the organized process of sharing information with relevant parties during and after a cybersecurity incident. This…

  4. Incident Containment

    Incident containment is the process of isolating affected systems and networks during a cybersecurity incident. Its primary goal is to…

  5. Incident Decision Support

    Incident Decision Support refers to the systems, tools, and processes that assist cybersecurity teams in making effective and timely choices…

  6. Incident Dependency Mapping

    Incident dependency mapping is the process of identifying and documenting the relationships between IT systems, applications, and services within an…

  7. Incident Escalation

    Incident escalation is a formal process within incident management where a cybersecurity event is moved to a higher level of…

  8. Incident Escalation Matrix

    An Incident Escalation Matrix is a structured document that outlines the process for raising the severity of a cybersecurity incident…

  9. Incident Evidence Management

    Incident Evidence Management is the structured process of identifying, collecting, preserving, analyzing, and presenting digital evidence related to a cybersecurity…

  10. Incident Forensics

    Incident forensics is the systematic process of collecting, preserving, analyzing, and reporting on digital evidence related to a cybersecurity incident.…

  11. Incident Impact Assessment

    Incident Impact Assessment is the process of evaluating the potential harm and consequences of a cybersecurity incident. It determines the…

  12. Incident Impact Modeling

    Incident Impact Modeling is a process used to predict and quantify the potential consequences of a cybersecurity incident. It involves…

  13. Incident Playbooks

    Incident playbooks are structured, documented procedures that guide cybersecurity teams through the process of detecting, analyzing, containing, eradicating, and recovering…

  14. Incident Prioritization

    Incident prioritization is the process of ranking cybersecurity incidents based on their severity, potential impact, and urgency. This systematic approach…

  15. Incident Readiness

    Incident readiness is the proactive process of preparing an organization to effectively handle cybersecurity incidents. It involves establishing plans, procedures,…

  16. Incident Recovery

    Incident recovery is the process of restoring affected systems, data, and services to their normal operational state following a cybersecurity…

  17. Incident Recovery Objectives

    Incident Recovery Objectives are predefined targets that an organization aims to achieve when restoring operations after a cybersecurity incident. These…

  18. Incident Remediation

    Incident remediation is the process of resolving a cybersecurity incident after it has been detected and contained. It involves eliminating…

  19. Incident Response

    Incident response is a structured process for an organization to prepare for, detect, contain, eradicate, recover from, and learn from…

  20. Incident Response Automation

    Incident response automation uses technology to automatically perform tasks during a cybersecurity incident. This includes detecting threats, collecting data, analyzing…

  21. Incident Response Lifecycle

    The Incident Response Lifecycle is a structured approach organizations use to manage cybersecurity incidents effectively. It involves a series of…

  22. Incident Response Maturity

    Incident Response Maturity refers to an organization's level of preparedness and effectiveness in handling cybersecurity incidents. It evaluates the sophistication…

  23. Incident Response Orchestration

    Incident response orchestration involves automating and coordinating the various steps taken during a cybersecurity incident. It uses tools and processes…

  24. Incident Response Plan

    An Incident Response Plan is a documented set of procedures that guides an organization through the process of reacting to…

  25. Incident Response Readiness

    Incident Response Readiness refers to an organization's ability to prepare for, detect, contain, and recover from cybersecurity incidents. It involves…

  26. Incident Root Cause Analysis

    Incident Root Cause Analysis is a structured process to identify the fundamental reasons why a cybersecurity incident occurred. It goes…

  27. Incident Severity Classification

    Incident severity classification is the process of assigning a priority level to a cybersecurity incident based on its potential impact…

  28. Information Asset Classification

    Information asset classification is the process of categorizing an organization's data based on its sensitivity, value, and criticality to the…

  29. Information Asset Inventory

    An Information Asset Inventory is a structured list of all data and information systems an organization owns or manages. It…

  30. Information Assurance

    Information Assurance IA is the practice of managing risks related to the use, processing, storage, and transmission of information and…

  31. Information Classification

    Information classification is the process of categorizing data based on its sensitivity, value, and regulatory requirements. This helps organizations determine…

  32. Information Compromise

    Information compromise refers to the unauthorized access, disclosure, or acquisition of sensitive data by individuals or entities without proper authorization.…

  33. Information Control Framework

    An Information Control Framework is a structured set of policies, processes, and technologies designed to govern how an organization manages…

  34. Information Disclosure Risk

    Information disclosure risk refers to the potential for sensitive or confidential data to be exposed to unauthorized individuals or systems.…

  35. Information Exposure

    Information exposure is a cybersecurity vulnerability where an application or system unintentionally reveals sensitive data to unauthorized individuals. This can…

  36. Information Exposure Analytics

    Information Exposure Analytics is a cybersecurity process that identifies, analyzes, and quantifies the risk of sensitive data being unintentionally or…

  37. Information Risk Management

    Information Risk Management is the systematic process of identifying, assessing, and treating risks to an organization's information assets. It involves…

  38. Information Security

    Information Security, often called InfoSec, involves protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction.…

  39. Information Security Governance

    Information Security Governance is the system by which an organization directs and controls information security activities. It involves establishing a…

  40. Infrastructure Access Control

    Infrastructure access control is a security practice that regulates and restricts who can view, modify, or interact with an organization's…

  41. Infrastructure Attack Detection

    Infrastructure attack detection is the process of identifying unauthorized or malicious activities aimed at an organization's core IT infrastructure. This…

  42. Infrastructure Attack Surface

    The infrastructure attack surface refers to the sum of all potential entry points and vulnerabilities within an organization's IT infrastructure…

  43. Infrastructure Control Plane

    The Infrastructure Control Plane is the central system that manages and orchestrates an organization's IT infrastructure. It defines how computing,…

  44. Infrastructure Dependency Risk

    Infrastructure dependency risk refers to the potential for an organization's operations to be negatively affected by the failure or compromise…

  45. Infrastructure Exposure

    Infrastructure exposure describes the extent to which an organization's IT systems, networks, and applications are visible and accessible to potential…

  46. Infrastructure Hardening

    Infrastructure hardening is the process of securing an organization's IT infrastructure components. This includes servers, networks, applications, and endpoints. The…

  47. Infrastructure Identity

    Infrastructure identity is the unique digital representation assigned to non-human entities within an IT environment. This includes servers, virtual machines,…

  48. Infrastructure Misconfiguration

    Infrastructure misconfiguration occurs when IT systems, networks, or cloud environments are set up incorrectly, leading to security vulnerabilities. These errors…

  49. Infrastructure Posture Management

    Infrastructure Posture Management (IPM) is the continuous process of monitoring, assessing, and improving the security configuration and state of an…

  50. Infrastructure Resilience

    Infrastructure resilience refers to an organization's ability to maintain essential operations and services even when faced with disruptions. This includes…

  51. Infrastructure Risk

    Infrastructure risk refers to the potential for harm or disruption to an organization's foundational IT components, such as servers, networks,…

  52. Infrastructure Security

    Infrastructure security involves safeguarding an organization's foundational IT components. This includes servers, networks, data centers, cloud environments, and endpoints. Its…

  53. Infrastructure Threat Modeling

    Infrastructure threat modeling is a systematic process to identify potential security threats and vulnerabilities within an organization's IT infrastructure. This…

  54. Insecure Access Control

    Insecure access control is a security vulnerability where an application fails to properly restrict what authenticated users can do. This…

  55. Insecure Authentication

    Insecure authentication refers to vulnerabilities in how systems verify user identities. These weaknesses can allow attackers to bypass security measures…

  56. Insecure Configuration

    Insecure configuration occurs when software, hardware, or network devices are set up with default, weak, or improperly managed settings. These…

  57. Insecure Deserialization

    Insecure deserialization occurs when an application deserializes untrusted data without proper validation. This process converts data from a byte stream…

  58. Insecure Identity Configuration

    Insecure identity configuration refers to misconfigurations in user accounts, authentication systems, or access control policies that create security vulnerabilities. These…

  59. Insider Access Abuse

    Insider access abuse occurs when an individual with legitimate access privileges to an organization's systems or data intentionally misuses those…

  60. Insider Attack Surface

    The insider attack surface includes all systems, data, and processes within an organization that an authorized individual could potentially misuse…