Security

This cyber security glossary explains the meaning of terms about different types of computer security threats as well as words about application security, access control, network intrusion detection, security awareness training and computer forensics.

Authentication and access control

Terms related to authentication, including security definitions about passwords and words and phrases about proving identity.

  • What is Point-to-Point Protocol over Ethernet (PPPoE)?

    Point-to-Point Protocol over Ethernet (PPPoE) is a network protocol that facilitates communication between network endpoints.

  • What is governance, risk and compliance (GRC)?

    Governance, risk and compliance (GRC) refers to an organization's strategy, or framework, for handling the interdependencies of the following three components: corporate governance policies, enterprise risk management programs, and regulatory and company compliance.

  • What is biometric authentication?

    Biometric authentication is a security process that relies on the unique biological characteristics of individuals to verify their identity.

View All Authentication and access control Definitions

Compliance, risk and governance

This glossary contains definitions related to compliance. Some definitions explain the meaning of words used in compliance regulations. Other definitions are related to the strategies that compliance officers use to mitigate risk and create a manageable compliance infrastructure.

  • What is Allscripts?

    Allscripts is a former vendor of electronic health record (EHR) systems and healthcare IT solutions, primarily serving physician practices, hospitals, and healthcare systems.

  • What is geo-blocking?

    Geo-blocking is blocking online content based on its location.

  • What is conduct risk?

    Conduct risk is the potential for a company's actions or behavior to harm its customers, stakeholders or broader market integrity.

View All Compliance, risk and governance Definitions Back to Top

Network security

Terms related to network security, including definitions about intrusion prevention and words and phrases about VPNs and firewalls.

  • What is network security? Definition and best practices

    Network security encompasses all the steps taken to protect the integrity of a computer network and the data within it.

  • What is security theater?

    Security theater refers to highly visible security measures that create the illusion of increased safety but don't stop threats.

  • What is the Mitre ATT&CK framework?

    The Mitre ATT&CK -- pronounced miter attack -- framework is a free, globally accessible knowledge base that describes the latest behaviors and tactics of cyberadversaries to help organizations strengthen their cybersecurity strategies.

View All Network security Definitions Back to Top

Security Admin

Terms related to security management, including definitions about intrusion detection systems (IDS) and words and phrases about asset management, security policies, security monitoring, authorization and authentication.

  • What is information security (infosec)?

    Information security (infosec) is a set of policies, procedures and principles for safeguarding digital data and other kinds of information.

  • What is PHI breach (protected health information breach)?

    A PHI (protected health information) breach is unauthorized access, use or disclosure of individually identifiable health information that is held or transmitted by a healthcare organization or its business associates.

  • What is governance, risk and compliance (GRC)?

    Governance, risk and compliance (GRC) refers to an organization's strategy, or framework, for handling the interdependencies of the following three components: corporate governance policies, enterprise risk management programs, and regulatory and company compliance.

View All Security Admin Definitions Back to Top

Threat management

Terms related to security threats, including definitions about anti-virus programs or firewalls and words and phrases about malware, viruses, Trojans and other security attacks.

  • What is a SIM swap attack (SIM intercept attack)?

    A SIM swap attack (SIM intercept attack) is a form of identity fraud in which the attacker transfers a user's phone number to a different SIM card to gain access to the user's phone calls, text messages, bank accounts, credit card numbers and other sensitive information.

  • What is security theater?

    Security theater refers to highly visible security measures that create the illusion of increased safety but don't stop threats.

  • What is IoT security?

    IoT security is the technology segment focused on safeguarding connected devices and networks in the internet of things.

View All Threat management Definitions Back to Top