1/166
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
CIA
Confidentiality
AAA
Authentication
PKI
Public Key Infrastructure - A comprehensive framework of hardware
TPM
Trusted Platform Module - A dedicated
HSM
Hardware Security Module - A high-performance
CRL / CRLs
Certificate Revocation List - A downloadable offline registry maintained by a Certificate Authority containing digital certificates that have been revoked before their scheduled expiration date.
OCSP
Online Certificate Status Protocol - An automated
CSR
Certificate Signing Request - A standardized block of encrypted text sent from an applicant to a Certificate Authority to apply for a digital identity certificate
IT
Information Technology - The broader discipline and infrastructure encompassing the hardware
SMS
Short Message Service - A text messaging service component of phone and internet systems
IM
Instant Messaging - Real-time online text-based communication applications
MSP / MSPs
Managed Service Provider - A third-party company that remotely manages a customer's IT infrastructure and end-user systems under a subscription model
TOC
Time of Check - The specific moment when an application or system verifies the security conditions or permissions of a resource before executing an action.
TOU
Time of Use - The subsequent moment when an application actually executes an action on a resource
OS
Operating System - The core system software that manages computer hardware
SQLi / SQL
Structured Query Language Injection - A code injection technique that exploits web applications by inserting malicious SQL statements into entry fields to manipulate backend databases.
XSS
Cross-Site Scripting - A web application vulnerability that allows attackers to inject malicious client-side scripts (usually JavaScript) into web pages viewed by other users to hijack sessions or steal cookies.
VM
Virtual Machine - An isolated software-based emulation of a physical computer system running its own guest operating system on a host machine via a hypervisor.
RFID
Radio-Frequency Identification - A wireless technology using electromagnetic fields to automatically identify and track tags attached to objects or access badges
DDoS
Distributed Denial of Service - A malicious cyberattack that floods a target server
DNS
Domain Name System - The hierarchical
ACL
Access Control List - A sequential registry of rules configured on firewalls or routers determining which network traffic
HIPS
Host-based Intrusion Prevention System - An inline security software installed on an individual endpoint that actively monitors internal system activity and network traffic to detect and automatically block malicious behavior.
IaC
Infrastructure as Code - The practice of managing and provisioning computing infrastructure
SDN
Software-Defined Networking - An architectural framework that decouples the network control plane (decision-making) from the data plane (packet forwarding) to enable centralized
IoT
Internet of Things - A physical network of interconnected smart devices embedded with sensors
ICS
Industrial Control System - An overarching term describing integration systems used to monitor and control industrial equipment in critical infrastructure
SCADA
Supervisory Control and Data Acquisition - A high-level industrial architecture utilizing computers
RTOS
Real-Time Operating System - A specialized operating system designed to process data and execute commands as it comes in with precise
IPS
Intrusion Prevention System - An inline network security appliance that actively monitors network traffic
IDS
Intrusion Detection System - A passive network or host monitoring system that analyzes traffic patterns to detect security violations or unauthorized access attempts and alerts administrators without actively blocking traffic.
EAP
Extensible Authentication Protocol - An authentication framework frequently used in wireless networks and point-to-point connections that supports various authentication methods like certificates
WAF
Web Application Firewall - A specialized Layer 7 firewall that inspects and filters HTTP/HTTPS traffic to and from a web application to protect against web attacks like SQLi
UTM
Unified Threat Management - An all-in-one security appliance that integrates multiple security features—including firewalling
NGFW
Next-Generation Firewall - An advanced deep-packet inspection firewall that combines traditional stateful inspection with application awareness
VPN
Virtual Private Network - An encrypted connection established over a public network (like the Internet) to securely transmit data between remote devices or networks as if they were directly connected to a private network.
TLS
Transport Layer Security - A cryptographic protocol operating at the Application/Presentation layer that provides end-to-end data encryption
IPSec
Internet Protocol Security - A suite of Layer 3 protocols used to authenticate and encrypt entire IP packets between network nodes
SD-WAN
Software-Defined Wide Area Network - An architectural approach applying SDN concepts to WAN connections
SASE
Secure Access Service Edge - A cloud-native architecture converging SD-WAN networking capabilities with cloud-delivered security services (including Zero Trust Network Access and WAF) into a single management platform.
UPS
Uninterruptible Power Supply - A hardware device containing a battery backup that provides instantaneous emergency power to critical electronics during sudden main power failures or momentary blackouts.
MDM
Mobile Device Management - A centralized software solution used by IT administrators to enforce security policies
BYOD
Bring Your Own Device - A mobile deployment model allowing employees to use their personal smartphones or laptops to access corporate resources
COPE
Corporate-Owned
CYOD
Choose Your Own Device - A mobile deployment model where an organization provides a pre-approved
WPA3
Wi-Fi Protected Access 3 - The modern wireless security standard introducing advanced encryption (GCMP-256) and replacing Pre-Shared Keys with Simultaneous Authentication of Equals (SAE) to protect against brute-force attacks.
RADIUS
Remote Authentication Dial-In User Service - A centralized networking protocol providing AAA management for users connecting to network services
SCAP
Security Content Automation Protocol - A suite of standardized specifications used to automate the continuous monitoring
SIEM
Security Information and Event Management - A security solution that aggregates
DLP
Data Loss Prevention - A set of tools and security practices designed to detect