Term: Network Segmentation Definition: Network Segmentation is the practice of dividing networks into zones to limit lateral movement and reduce blast …
Data Protection Glossary
A working glossary for protection programs: classification, access control, encryption, backup, detection, response, and assurance.
Term: Patch Management Definition: Patch Management is the process of deploying software updates to remediate vulnerabilities and maintain system …
Term: Privileged Access Management (PAM) Definition: Privileged Access Management (PAM) is controls that govern high-risk administrative access …
Term: Recovery Point Objective (RPO) Definition: Recovery Point Objective (RPO) is the maximum acceptable data loss measured in time; a core data …
Term: Recovery Time Objective (RTO) Definition: Recovery Time Objective (RTO) is the maximum acceptable time to restore a service after disruption; a …
Term: Retention and Legal Hold Definition: Retention and Legal Hold is policies and controls that govern how long data and logs are kept and how …
Term: Role-Based Access Control (RBAC) Definition: Role-Based Access Control (RBAC) is an authorization model that assigns permissions to roles (job …
Term: Secrets Management Definition: Secrets Management is tools and processes for storing, rotating, and auditing credentials, API keys, …
Term: Secure SDLC Definition: Secure SDLC is embedding security controls and testing into software development from design through deployment and …
Term: Security Information and Event Management (SIEM) Definition: Security Information and Event Management (SIEM) is centralized collection and …








