Zam
lom
Our Story
Getting Started
Tools
Sign In
Start Learning Free
Free Resource
Security Glossary
428+ clear, no-fluff definitions covering leadership, architecture, governance, and operations.
A
ABAC
Accountability
ACID
ACME
Adversarial Probing
Adversarial Red-Teaming
Adversarial Suffix
AES
Agent Revocation
Aggregation
Agile
AIMS
Air gap
ALE
Anonymization
ARO
ARP
AS-REP Roasting
ASM
Asymmetric cryptography
Audit
Audit committee
AUP
Authentication
Authorization
Avalanche effect
B
Bandwidth
Baseline
Basic Constraints
BCDR
BEC
BIA
BIMI
Biometrics
Blacklisting
Bloatware
BOLA
Bollard
Broadcast
Brute force
Brute force attack
Business continuity
BYOD
BYOVD
C
CA
Canons
CAT
CCB
CDN
CER
Certificate Authority
Chain of custody
CICD
CIEM
Ciphertext
CISA
CISO
Clean room
CMM
COBIT
Code repository
Cold site
Collision
Community cloud
Configuration management
Consent
Containerization
Containment
Continuous monitoring
Continuous Red-Teaming
Controller
COSO
COTS
CPE
Critical path
CRL
Crypto shredding
CSR
CSRF
CTI
CVE
CVSS
D
DAC
DAST
Data at rest
Data custodian
Data in transit
Data in use
Data minimization
Data remnants
Data subject
De-provisioning
Decryption
Defense in depth
Degaussing
DEK
Deluge system
DevSecOps
Differential backup
Digital certificate
Digital signature
Disaster recovery
Distributed computing
DKIM
DMARC
DMCA
DMZ
DNP3
DNSSEC
DoH
DoT
DPO
Dry pipe
Due care
Due diligence
Duress code
E
EAP
EAP-TLS
East-west traffic
ECC
Edge computing
EDM
EKU
Encryption
End of life
End-to-end encryption
Endpoint
ESP
ETW
Exculpatory evidence
Explainable AI
F
FAIR
Faraday shielding
Federation
Fiber optic
FIDO2
FIM
Five whys
Forensic image
Forensic Log Integrity
Frequency analysis
FS-ISAC
Full backup
Full interruption test
Fuzz testing
G
GDPR
Golden build
GPO
Guest escape
H
Hardening
Hashing
HMI
Honeynet
Honeypot
Hot site
HSM
Hybrid cloud
Hypervisor
I
IaaS
IAM
IAST
ICS
IDE
Identification
Identity proofing
IDMZ
IDS
IEC 62443
Immutable
Incident response
Incremental backup
Indirect prompt injection
Inference Rate Limit
InfraGard
Initial training
Initialization vector
Input validation
IOC
IP address
IPS
IPSec
IPv4
IPv6
IRM
ISAC
ISC2
ISCSI
ISMS
ISO 42001
J
Jailbreaking
JIT Access
Jitter
Job rotation
Just-in-time access
JWT
K
KDC
Kerberos
Key escrow
Key Recovery Agent
Key rotation
Key space
Kill order bias
KPI
KRACK
KRBTGT
KRI
L
L2TP
Latency
LDAP
Least privilege
Lessons learned
LiFi
LLM Security
Loaner equipment
LSASS
M
MAC
MAC address
MACsec
MAD
Man trap
Mandatory vacation
Maturity model
MD5
MDM
Message digest
MFA
MFA fatigue
Micro-segmentation
Misuse case testing
MITRE ATT&CK
Model Drift
Model Hallucination
Model Reconnaissance
Model Retraining
MTA-STS
MTLS
Multicast
N
NAC
NDA
Need to know
NERC CIP
Next-gen firewall
NGFW
NIST AI RMF
NIST CSF
NLP Security
Non-repudiation
Normalization
North-south traffic
NPB
NTLM
O
OAuth
OCSP
OSI model
OSINT
Out of band
Outbound DLP
Output Guardrails
Overwriting
OWASP
OWASP Top 10
P
PaaS
Packet switching
PAM
Parallel test
Pass the hash
Patch management
PCI-DSS
PDP
Peering
Penetration testing
PEP
Permission creep
PFS
PGP
PHI
Phishing
Physical segmentation
PII
PKCE
PKI
Plaintext
PLC
PPTP
Pre-audit review
Preponderance of evidence
Private cloud
Private key
Privilege creep
Privilege escalation
Privileged account
Processor
Prompt Firewall
Prompt injection
Provisioning
Pseudonymization
Public cloud
Public key
PVLAN
Q
QUIC
R
RACI
RADIUS
RAG
RAG Poisoning
Rainbow table
RBAC
RBI
RDP
Recurring training
Redundancy
Refresher training
Registration Authority
Remediation
Residual risk
Resiliency
Responsible disclosure
Risk appetite
RLHF
RMF
Rolling patch deployment
Root cause analysis
RPKI
RPO
RTO
S
SaaS
Safetensors
Salting
SAML
Sandboxing
Sanitization
SAST
SBOM
SCA
SCADA
SCC
SCEP
SCIF
Scoping
SCRM
SCT
SD-WAN
SDLC
SDN
Secure coding
Security through obscurity
Semantic Cache
Separation of duties
Service account
Session key
SHA-256
Shadow AI
Shift left
Side channel attack
SIEM
SIS
SLA
SLE
SOAR
SOC
SOC 1
SOC 2
SOC 3
Social engineering
Software-defined security
SPA
Spaced repetition
SPF
Spiral
SPN
SSAE 18
SSH
SSL
SSO
Stateful inspection
Step-up authentication
STRIDE
Supply chain attack
SWG
Symmetric cryptography
Synthetic transaction
System Prompt Hardening
T
Tabletop exercise
TACACS
Tailgating
Tailoring
Test coverage analysis
TGS
TGT
Threat intelligence
TLS
Token Tracking
Tokenization
Tort
TPM
TPRM
Turnstile
Twisted pair
Two person integrity
U
UEBA
Unicast
UPS
V
Vendor lock-in
Vendor lockout
Vishing
VLAN
VoIP
VPN
VRF
Vulnerability scan
W
WAAP
WAF
Warm site
Waterfall
Wet pipe
Whitelisting
WIPO
WIPS
WMI
Work factor
WORM
WPA2
WPA3
Write blocker
X
X.509
XSS
Y
YARA
Z
Zero-day
ZTNA