Glossary

Privacy terms glossary

Plain-language explanations for encryption, tracking, compliance, and security concepts.

411 terms (page 15 of 18)
Browse by letter: All A B C D E F G H I J K L M N O P Q R S T U V W X Y Z
🤝

Secure Multi‑Party Computation

Encryption

Cryptographic protocols that allow parties to jointly compute a function while keeping inputs private.

homomorphic encryption zero knowledge proof data minimization
🗄️

Secure Storage

Security

Confidential storage with controlled access and keys.

data encryption at rest encryption key secure enclave
🧾

Security Audit

Security

Systematic assessment of controls, configuration, and compliance.

penetration testing responsible disclosure incident response
🧾

Security Headers

Web Security

HTTP response headers enforcing browser security policies.

https xss clickjacking
🗝️

Security Key

Authentication

Authenticator (platform or roaming) performing public-key challenge-response for authentication.

hardware security key webauthn multi factor authentication
🪪

Security Token

Authentication

Authentication factor/token used to assert identity; may be hardware-backed or software-based.

two factor authentication multi factor authentication totp
🌱

Seed Phrase

Security

Mnemonic used to derive wallet keys; effectively a master recovery secret.

private key crypto wallet backup
🏠

Self‑Hosted

Security

Deployment model where the operator controls infrastructure, data storage, and configuration.

self hosting cloud provider information security
🛠️

Self‑Hosting

Security

Operational practice of hosting and administering services under your own control.

self hosted cloud security incident response
🧑‍🚀

Self‑Sovereign Identity (SSI)

Privacy

Decentralized identity model where users hold verifiable credentials and control disclosure.

decentralized identifier decentralized digital identity
⚠️

Sensitive Personal Data

Privacy

Higher-risk personal data categories (e.g., health, biometrics, precise location) requiring enhanced safeguards.

personal data biometric data data minimization
🍪

Session Cookie

Session Management

Cookie storing a session identifier; security depends on flags (Secure, HttpOnly, SameSite) and rotation.

session management cookie authentication
🧤

Session Hijacking

Threats

Unauthorized reuse of a valid session identifier.

session management man in the middle attack xss
🧷

Session Management

Security

Lifecycle control of authentication sessions and tokens.

authentication authorization session hijacking
🕶️

Shadow IT

Security

Unmanaged or unauthorized systems/services used outside official governance and controls.

byod information security access control
👥

Shared IP

Network Privacy

Multi-tenant IP usage via NAT or shared egress.

dedicated ip ip address vpn
📈

SIEM

Security

Security Information and Event Management platform aggregating logs, correlating events, and generating alerts.

logging monitoring incident response
📲

SIM Swapping

Threats

Account takeover technique involving fraudulent SIM reassignment at a carrier to intercept calls/SMS.

account takeover two factor authentication social engineering
🔑

Single Sign‑On (SSO)

Authentication

Authentication scheme where one identity session grants access to multiple relying parties via tokens.

identity provider authentication authorization
📜

Smart Contract

Security

Self-executing program deployed to a blockchain, executed by the network.

blockchain web3 defi
🏢

SOC (Security Operations Center)

Security

Operational function responsible for continuous monitoring, detection, triage, and incident response.

siem incident response monitoring
🎭

Social Engineering

Threats

Psychological manipulation tactics used to elicit secrets, actions, or access from targets.

phishing spear phishing account takeover
📦

Software Supply Chain

Security

Upstream components, dependencies, build pipelines, and distribution channels involved in producing and delivering software.

supply chain attack sbom open source
🎯

Spear Phishing

Threats

Targeted social engineering using personalized context.

phishing account takeover identity theft