122 Security terms
Showing 61–120, alphabetical
-
Policy Enforcement Gaps
Policy enforcement gaps refer to instances where an organization's defined security policies are not consistently or completely put into practice.…
-
Policy Exception Management
Policy exception management is a formal process for handling situations where an organization cannot or will not comply with a…
-
Policy Lifecycle Management
Policy Lifecycle Management is the systematic process of creating, implementing, monitoring, and updating an organization's security policies. It ensures that…
-
Policy Management
Policy management in cybersecurity is the systematic process of developing, communicating, implementing, and maintaining security policies. These policies define acceptable…
-
Policy Trust Boundary
A Policy Trust Boundary is a conceptual line or perimeter within a system or network where security policies change. It…
-
Policy Violation
A policy violation in cybersecurity refers to any action, system configuration, or behavior that goes against the established rules and…
-
Post Quantum Cryptography
Post Quantum Cryptography PQC refers to cryptographic algorithms designed to be secure against attacks by both classical and quantum computers.…
-
Posture Assessment
Posture assessment is the process of evaluating an organization's current cybersecurity state. It involves identifying vulnerabilities, misconfigurations, and compliance gaps…
-
Posture Deviation
Posture deviation occurs when an organization's actual security state differs from its established security posture. This deviation can involve misconfigurations,…
-
Posture Drift
Posture drift refers to the gradual, unintended deviation of an organization's security configurations and controls from its established baseline. This…
-
Posture Management
Posture management is the continuous process of monitoring, assessing, and improving an organization's cybersecurity defenses. It involves identifying and remediating…
-
Posture Visibility
Posture visibility refers to an organization's ability to see and understand its current cybersecurity state across all IT assets. This…
-
Privacy By Design
Privacy By Design is an approach that embeds data protection and privacy considerations into the entire lifecycle of technology, systems,…
-
Privacy Compliance
Privacy compliance refers to an organization's adherence to laws, regulations, and internal policies governing the collection, use, storage, and sharing…
-
Privacy Control Effectiveness
Privacy Control Effectiveness refers to the degree to which implemented measures successfully protect personal data from unauthorized access, use, disclosure,…
-
Privacy Control Framework
A Privacy Control Framework is a structured set of policies, procedures, and technical measures designed to manage and protect personal…
-
Privacy Data Exposure
Privacy data exposure refers to the unauthorized disclosure or access of sensitive personal information. This can happen through security breaches,…
-
Privacy Impact Assessment
A Privacy Impact Assessment PIA is a systematic process used to identify and evaluate potential privacy risks associated with the…
-
Privacy Protection
Privacy protection refers to the measures and practices designed to secure personal information from unauthorized access, collection, use, or disclosure.…
-
Privacy Risk Assessment
A Privacy Risk Assessment is a systematic process to identify, evaluate, and manage risks related to the collection, use, storage,…
-
Privacy Threat Modeling
Privacy threat modeling is a structured process used to identify, analyze, and mitigate potential privacy risks within systems, applications, and…
-
Private Key Compromise
Private key compromise refers to the unauthorized disclosure or theft of a cryptographic private key. This key is essential for…
-
Private Key Lifecycle
The private key lifecycle refers to the entire process of managing a cryptographic private key from its generation to its…
-
Private Key Protection
Private key protection refers to the measures taken to safeguard cryptographic private keys from unauthorized access, disclosure, or modification. These…
-
Private Key Storage
Private key storage refers to the secure methods and practices used to protect cryptographic private keys from unauthorized access, disclosure,…
-
Privilege Abuse
Privilege abuse is the misuse of legitimate access rights by an authorized individual or system. This occurs when someone with…
-
Privilege Management
Privilege management is the strategy and technology used to control and monitor elevated access rights within an IT environment. It…
-
Privileged Access Management
Privileged Access Management (PAM) is a cybersecurity strategy and set of tools. It helps organizations secure, control, and monitor all…
-
Privileged Access Review
A Privileged Access Review is a systematic process to examine and validate all elevated user permissions within an organization's IT…
-
Privileged Account Discovery
Privileged Account Discovery is the process of locating and identifying all accounts within an organization's IT infrastructure that possess elevated…
-
Privileged Attack Surface
The privileged attack surface refers to all points and pathways within an organization's IT environment that an attacker could exploit…
-
Privileged Credential Exposure
Privileged credential exposure refers to the unauthorized disclosure or availability of highly sensitive login information. This includes usernames, passwords, API…
-
Privileged Escalation
Privileged escalation is a type of cyberattack where an unauthorized user or process gains elevated access rights within a computer…
-
Privileged Escalation Paths
Privileged escalation paths refer to the methods and sequences an attacker uses to gain elevated access rights within a computer…
-
Privileged Identity
Privileged identity refers to any human or non-human account that possesses elevated access rights within an IT environment. These identities…
-
Privileged Role Definition
A privileged role definition formally describes a set of elevated access rights and permissions granted to users or systems within…
-
Privileged Session Isolation
Privileged Session Isolation is a security measure that creates a secure, isolated environment for administrative users when they access sensitive…
-
Privileged Session Monitoring
Privileged Session Monitoring involves observing and recording the actions of users who have elevated access rights to critical systems and…
-
Privileged Trust Boundary
A Privileged Trust Boundary is a logical or physical perimeter that separates highly sensitive systems or data from less trusted…
-
Process Anomaly Detection
Process Anomaly Detection is a cybersecurity technique that identifies unusual or suspicious activities within computer processes. It works by establishing…
-
Process Behavior Analysis
Process Behavior Analysis PBA is a cybersecurity technique that observes and analyzes the actions of software processes running on a…
-
Process Execution Monitoring
Process Execution Monitoring involves continuously observing and recording the activities of programs and applications on computer systems. This includes tracking…
-
Process Hollowing
Process hollowing is a sophisticated malware technique where an attacker creates a legitimate process in a suspended state. They then…
-
Process Injection
Process injection is a sophisticated malware technique where an attacker inserts malicious code into a legitimate, running process on a…
-
Process Integrity Monitoring
Process Integrity Monitoring is a cybersecurity practice that continuously observes and verifies the legitimate operation of system processes. It detects…
-
Process Isolation
Process isolation is a security technique that separates different computer processes from each other. Each process runs in its own…
-
Process Monitoring
Process monitoring involves observing and analyzing the execution of programs and services on a computer system. It tracks details like…
-
Process Privilege Escalation
Process privilege escalation occurs when a user or attacker exploits a vulnerability in a running software process to gain elevated…
-
Process Trust Validation
Process Trust Validation is a security mechanism that verifies the integrity and authenticity of executable processes running on an endpoint.…
-
Protocol Abuse
Protocol abuse occurs when attackers manipulate or misuse standard network communication rules to achieve malicious goals. This often involves sending…
-
Protocol Downgrade Attack
A protocol downgrade attack occurs when an attacker tricks two communicating parties into using an older, less secure version of…
-
Protocol Fingerprinting
Protocol fingerprinting is a network analysis technique used to identify the specific communication protocols operating on a network. It works…
-
Protocol Security
Protocol security refers to the measures taken to protect communication protocols from attacks. These protocols are sets of rules that…
-
Proxy Abuse
Proxy abuse occurs when a proxy server is exploited or misused for malicious purposes. This can involve bypassing security controls,…
-
Proxy Bypass
Proxy bypass is the act of circumventing a proxy server to establish a direct connection to a network resource. This…
-
Proxy Misconfiguration
Proxy misconfiguration refers to errors in setting up or maintaining proxy servers. These errors can inadvertently expose internal networks, bypass…
-
Proxy Security
Proxy security involves using a proxy server as an intermediary between users and the internet. This server inspects and filters…
-
Proxy Traffic Inspection
Proxy traffic inspection involves examining network data that passes through a proxy server. This process checks for malicious content, policy…
-
Public Key Cryptography
Public Key Cryptography, also known as asymmetric cryptography, uses a pair of mathematically linked keys: a public key and a…
-
Public Key Infrastructure
Public Key Infrastructure (PKI) is a system of hardware, software, policies, and procedures that creates, manages, distributes, uses, stores, and…