#cybersecurity
142 approved public terms with this tag.
Application Phishing Resistance is a security identity control that reduces success of credential theft attacks for software security and abuse resistance. It uses passkeys, hardware-backed factors, and origin checks so teams can protect sign-in flows while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Application Phishing Resistance when a form received unusual input, so the team could protect sign-in flows before the risk review began.”
Application Policy Decision is a security authorization decision that determines whether an action should be allowed for software security and abuse resistance. It uses identity, resource, context, and policy evaluation so teams can enforce least privilege while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Application Policy Decision when a form received unusual input, so the team could enforce least privilege before the risk review began.”
Application Secret Scanner is a security preventive control that finds credentials before they spread for software security and abuse resistance. It uses pattern matching, entropy checks, and allowlists so teams can stop accidental key exposure while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Application Secret Scanner when a form received unusual input, so the team could stop accidental key exposure before the risk review began.”
Application Trust Boundary is a security security boundary that defines where assumptions, identities, or permissions change for software security and abuse resistance. It uses network edges, service roles, and data classifications so teams can avoid accidental privilege crossing while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Application Trust Boundary when a form received unusual input, so the team could avoid accidental privilege crossing before the risk review began.”
Cloud Abuse Throttle is a security anti-abuse control that slows or blocks suspicious repeated behavior for cloud account and resource security. It uses rate limits, reputation signals, and challenge steps so teams can protect public access without a login wall while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Abuse Throttle when a storage bucket changed policy, so the team could protect public access without a login wall before the risk review began.”
Cloud Attack Surface is a security exposure model that lists reachable systems, actions, and trust boundaries for cloud account and resource security. It uses asset inventory, route discovery, and permission mapping so teams can prioritize risk reduction while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Attack Surface when a storage bucket changed policy, so the team could prioritize risk reduction before the risk review began.”
Cloud Containment Plan is a security response plan that limits damage after a suspected compromise for cloud account and resource security. It uses isolation steps, credential rotation, and communication paths so teams can reduce attacker dwell time while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Containment Plan when a storage bucket changed policy, so the team could reduce attacker dwell time before the risk review began.”
Cloud Data Redaction is a security privacy control that removes sensitive values before data leaves a protected context for cloud account and resource security. It uses field rules, hashing, and safe logging so teams can share evidence without leaking secrets while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Data Redaction when a storage bucket changed policy, so the team could share evidence without leaking secrets before the risk review began.”
Cloud Detection Rule is a security security analytic that matches suspicious behavior or known indicators for cloud account and resource security. It uses logs, thresholds, signatures, and behavioral context so teams can surface actionable alerts while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Detection Rule when a storage bucket changed policy, so the team could surface actionable alerts before the risk review began.”
Cloud Evidence Chain is a security audit record that preserves how security evidence was collected and handled for cloud account and resource security. It uses timestamps, hashes, owners, and storage controls so teams can support trustworthy investigation while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Evidence Chain when a storage bucket changed policy, so the team could support trustworthy investigation before the risk review began.”
Cloud Forensic Snapshot is a security investigation artifact that captures system state for later review for cloud account and resource security. It uses logs, configuration, hashes, and time-bounded data so teams can analyze incidents without changing evidence while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Forensic Snapshot when a storage bucket changed policy, so the team could analyze incidents without changing evidence before the risk review began.”
Cloud Patch Window is a security remediation schedule that sets when a fix should be applied for cloud account and resource security. It uses risk severity, testing needs, and maintenance constraints so teams can repair systems without unnecessary disruption while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Patch Window when a storage bucket changed policy, so the team could repair systems without unnecessary disruption before the risk review began.”
Cloud Phishing Resistance is a security identity control that reduces success of credential theft attacks for cloud account and resource security. It uses passkeys, hardware-backed factors, and origin checks so teams can protect sign-in flows while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Phishing Resistance when a storage bucket changed policy, so the team could protect sign-in flows before the risk review began.”
Cloud Policy Decision is a security authorization decision that determines whether an action should be allowed for cloud account and resource security. It uses identity, resource, context, and policy evaluation so teams can enforce least privilege while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Policy Decision when a storage bucket changed policy, so the team could enforce least privilege before the risk review began.”
Cloud Secret Scanner is a security preventive control that finds credentials before they spread for cloud account and resource security. It uses pattern matching, entropy checks, and allowlists so teams can stop accidental key exposure while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Secret Scanner when a storage bucket changed policy, so the team could stop accidental key exposure before the risk review began.”
Cloud Trust Boundary is a security security boundary that defines where assumptions, identities, or permissions change for cloud account and resource security. It uses network edges, service roles, and data classifications so teams can avoid accidental privilege crossing while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Cloud Trust Boundary when a storage bucket changed policy, so the team could avoid accidental privilege crossing before the risk review began.”
Data Loss Abuse Throttle is a security anti-abuse control that slows or blocks suspicious repeated behavior for sensitive data exposure risk. It uses rate limits, reputation signals, and challenge steps so teams can protect public access without a login wall while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Data Loss Abuse Throttle when a report included private metadata, so the team could protect public access without a login wall before the risk review began.”
Data Loss Attack Surface is a security exposure model that lists reachable systems, actions, and trust boundaries for sensitive data exposure risk. It uses asset inventory, route discovery, and permission mapping so teams can prioritize risk reduction while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Data Loss Attack Surface when a report included private metadata, so the team could prioritize risk reduction before the risk review began.”
Data Loss Containment Plan is a security response plan that limits damage after a suspected compromise for sensitive data exposure risk. It uses isolation steps, credential rotation, and communication paths so teams can reduce attacker dwell time while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Data Loss Containment Plan when a report included private metadata, so the team could reduce attacker dwell time before the risk review began.”
Data Loss Data Redaction is a security privacy control that removes sensitive values before data leaves a protected context for sensitive data exposure risk. It uses field rules, hashing, and safe logging so teams can share evidence without leaking secrets while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Data Loss Data Redaction when a report included private metadata, so the team could share evidence without leaking secrets before the risk review began.”