IT Governance Basic
Source document
The form used to record data that have been captured.
Source lines of code (SLOC)
Often used in deriving single-point software-size estimations.
Spanning port
A port configured on a network switch to receive copies of traffic from one or more other ports on the switch.
Split data systems
A condition in which each of an enterprise’s regional locations maintains its own financial and operational data while sharing processing with an enterprise wide, centralized database.
Split domain name system (DNS)
An implementation of DNS that is intended to secure responses provided by the server such that different responses are given to internal vs. external users.
Split knowledge/split key
A security technique in which two or more entities separately hold data items that individually convey no knowledge of the information that results from combining the items; a condition under which two or more entities separately have key components that individually convey no knowledge of the plain text key that will be produced when the key components are combined in the cryptographic module.
Spoofing
Faking the sending address of a transmission in order to gain illegal entry into a secure system.
SPOOL (simultaneous peripheral operations online)
An automated function that can be based on an operating system or application in which electronic data being transmitted between storage areas are spooled or stored until the receiving device or storage area is prepared and able to receive the information.
Spyware
Software whose purpose is to monitor a computer user’s actions (e.g., web sites visited) and report these actions to a third party, without the informed consent of that machine’s owner or legitimate user.
Stage-gate
A point in time when a program is reviewed and a decision is made to commit expenditures to the next set of activities on a program or project, to stop the work altogether, or to put a hold on execution of further work.
Standard
A mandatory requirement, code of practice or specification approved by a recognized external standards organization, such as International Organization for Standardization (ISO).
Standing data
Permanent reference data used in transaction processing.
Star topology
A type of local area network (LAN) architecture that utilizes a central controller to which all nodes are directly connected.
Static analysis
Analysis of information that occurs on a non-continuous basis; also known as interval-based analysis.
Statistical sampling
A method of selecting a portion of a population, by means of mathematical calculations and probabilities, for the purpose of making scientifically and mathematically sound inferences regarding the characteristics of the entire population.
Storage area networks (SANs)
A variation of a local area network (LAN) that is dedicated for the express purpose of connecting storage devices to servers and other computing devices.
Strategic planning
The process of deciding on the enterprise’s objectives, on changes in these objectives, and the policies to govern their acquisition and use.
Strengths, weaknesses, opportunities and threats (SWOT)
A combination of an organizational audit listing the enterprise’s strengths and weaknesses and an environmental scan or analysis of external opportunities and threats.
Structured programming
A top-down technique of designing programs and systems that makes programs more readable, more reliable and more easily maintained.
Structured Query Language (SQL)
The primary language used by both application programmers and end users in accessing relational databases.