160 Security terms
Showing 61–120, alphabetical
-
Incident Blast Radius
Incident blast radius refers to the total extent of damage or impact caused by a security incident. It measures how…
-
Incident Classification
Incident classification is the process of categorizing cybersecurity incidents based on predefined criteria. These criteria typically include the type of…
-
Incident Communications
Incident communications refer to the organized process of sharing information with relevant parties during and after a cybersecurity incident. This…
-
Incident Containment
Incident containment is the process of isolating affected systems and networks during a cybersecurity incident. Its primary goal is to…
-
Incident Decision Support
Incident Decision Support refers to the systems, tools, and processes that assist cybersecurity teams in making effective and timely choices…
-
Incident Dependency Mapping
Incident dependency mapping is the process of identifying and documenting the relationships between IT systems, applications, and services within an…
-
Incident Escalation
Incident escalation is a formal process within incident management where a cybersecurity event is moved to a higher level of…
-
Incident Escalation Matrix
An Incident Escalation Matrix is a structured document that outlines the process for raising the severity of a cybersecurity incident…
-
Incident Evidence Management
Incident Evidence Management is the structured process of identifying, collecting, preserving, analyzing, and presenting digital evidence related to a cybersecurity…
-
Incident Forensics
Incident forensics is the systematic process of collecting, preserving, analyzing, and reporting on digital evidence related to a cybersecurity incident.…
-
Incident Impact Assessment
Incident Impact Assessment is the process of evaluating the potential harm and consequences of a cybersecurity incident. It determines the…
-
Incident Impact Modeling
Incident Impact Modeling is a process used to predict and quantify the potential consequences of a cybersecurity incident. It involves…
-
Incident Playbooks
Incident playbooks are structured, documented procedures that guide cybersecurity teams through the process of detecting, analyzing, containing, eradicating, and recovering…
-
Incident Prioritization
Incident prioritization is the process of ranking cybersecurity incidents based on their severity, potential impact, and urgency. This systematic approach…
-
Incident Readiness
Incident readiness is the proactive process of preparing an organization to effectively handle cybersecurity incidents. It involves establishing plans, procedures,…
-
Incident Recovery
Incident recovery is the process of restoring affected systems, data, and services to their normal operational state following a cybersecurity…
-
Incident Recovery Objectives
Incident Recovery Objectives are predefined targets that an organization aims to achieve when restoring operations after a cybersecurity incident. These…
-
Incident Remediation
Incident remediation is the process of resolving a cybersecurity incident after it has been detected and contained. It involves eliminating…
-
Incident Response
Incident response is a structured process for an organization to prepare for, detect, contain, eradicate, recover from, and learn from…
-
Incident Response Automation
Incident response automation uses technology to automatically perform tasks during a cybersecurity incident. This includes detecting threats, collecting data, analyzing…
-
Incident Response Lifecycle
The Incident Response Lifecycle is a structured approach organizations use to manage cybersecurity incidents effectively. It involves a series of…
-
Incident Response Maturity
Incident Response Maturity refers to an organization's level of preparedness and effectiveness in handling cybersecurity incidents. It evaluates the sophistication…
-
Incident Response Orchestration
Incident response orchestration involves automating and coordinating the various steps taken during a cybersecurity incident. It uses tools and processes…
-
Incident Response Plan
An Incident Response Plan is a documented set of procedures that guides an organization through the process of reacting to…
-
Incident Response Readiness
Incident Response Readiness refers to an organization's ability to prepare for, detect, contain, and recover from cybersecurity incidents. It involves…
-
Incident Root Cause Analysis
Incident Root Cause Analysis is a structured process to identify the fundamental reasons why a cybersecurity incident occurred. It goes…
-
Incident Severity Classification
Incident severity classification is the process of assigning a priority level to a cybersecurity incident based on its potential impact…
-
Information Asset Classification
Information asset classification is the process of categorizing an organization's data based on its sensitivity, value, and criticality to the…
-
Information Asset Inventory
An Information Asset Inventory is a structured list of all data and information systems an organization owns or manages. It…
-
Information Assurance
Information Assurance IA is the practice of managing risks related to the use, processing, storage, and transmission of information and…
-
Information Classification
Information classification is the process of categorizing data based on its sensitivity, value, and regulatory requirements. This helps organizations determine…
-
Information Compromise
Information compromise refers to the unauthorized access, disclosure, or acquisition of sensitive data by individuals or entities without proper authorization.…
-
Information Control Framework
An Information Control Framework is a structured set of policies, processes, and technologies designed to govern how an organization manages…
-
Information Disclosure Risk
Information disclosure risk refers to the potential for sensitive or confidential data to be exposed to unauthorized individuals or systems.…
-
Information Exposure
Information exposure is a cybersecurity vulnerability where an application or system unintentionally reveals sensitive data to unauthorized individuals. This can…
-
Information Exposure Analytics
Information Exposure Analytics is a cybersecurity process that identifies, analyzes, and quantifies the risk of sensitive data being unintentionally or…
-
Information Risk Management
Information Risk Management is the systematic process of identifying, assessing, and treating risks to an organization's information assets. It involves…
-
Information Security
Information Security, often called InfoSec, involves protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, or destruction.…
-
Information Security Governance
Information Security Governance is the system by which an organization directs and controls information security activities. It involves establishing a…
-
Infrastructure Access Control
Infrastructure access control is a security practice that regulates and restricts who can view, modify, or interact with an organization's…
-
Infrastructure Attack Detection
Infrastructure attack detection is the process of identifying unauthorized or malicious activities aimed at an organization's core IT infrastructure. This…
-
Infrastructure Attack Surface
The infrastructure attack surface refers to the sum of all potential entry points and vulnerabilities within an organization's IT infrastructure…
-
Infrastructure Control Plane
The Infrastructure Control Plane is the central system that manages and orchestrates an organization's IT infrastructure. It defines how computing,…
-
Infrastructure Dependency Risk
Infrastructure dependency risk refers to the potential for an organization's operations to be negatively affected by the failure or compromise…
-
Infrastructure Exposure
Infrastructure exposure describes the extent to which an organization's IT systems, networks, and applications are visible and accessible to potential…
-
Infrastructure Hardening
Infrastructure hardening is the process of securing an organization's IT infrastructure components. This includes servers, networks, applications, and endpoints. The…
-
Infrastructure Identity
Infrastructure identity is the unique digital representation assigned to non-human entities within an IT environment. This includes servers, virtual machines,…
-
Infrastructure Misconfiguration
Infrastructure misconfiguration occurs when IT systems, networks, or cloud environments are set up incorrectly, leading to security vulnerabilities. These errors…
-
Infrastructure Posture Management
Infrastructure Posture Management (IPM) is the continuous process of monitoring, assessing, and improving the security configuration and state of an…
-
Infrastructure Resilience
Infrastructure resilience refers to an organization's ability to maintain essential operations and services even when faced with disruptions. This includes…
-
Infrastructure Risk
Infrastructure risk refers to the potential for harm or disruption to an organization's foundational IT components, such as servers, networks,…
-
Infrastructure Security
Infrastructure security involves safeguarding an organization's foundational IT components. This includes servers, networks, data centers, cloud environments, and endpoints. Its…
-
Infrastructure Threat Modeling
Infrastructure threat modeling is a systematic process to identify potential security threats and vulnerabilities within an organization's IT infrastructure. This…
-
Insecure Access Control
Insecure access control is a security vulnerability where an application fails to properly restrict what authenticated users can do. This…
-
Insecure Authentication
Insecure authentication refers to vulnerabilities in how systems verify user identities. These weaknesses can allow attackers to bypass security measures…
-
Insecure Configuration
Insecure configuration occurs when software, hardware, or network devices are set up with default, weak, or improperly managed settings. These…
-
Insecure Deserialization
Insecure deserialization occurs when an application deserializes untrusted data without proper validation. This process converts data from a byte stream…
-
Insecure Identity Configuration
Insecure identity configuration refers to misconfigurations in user accounts, authentication systems, or access control policies that create security vulnerabilities. These…
-
Insider Access Abuse
Insider access abuse occurs when an individual with legitimate access privileges to an organization's systems or data intentionally misuses those…
-
Insider Attack Surface
The insider attack surface includes all systems, data, and processes within an organization that an authorized individual could potentially misuse…