Define the new internet.
Look up the words people use online, add the ones we missed, and help make the internet easier to understand.
Look up the words people use online, add the ones we missed, and help make the internet easier to understand.
2,337 definitions
Access Phishing Resistance is a security identity control that reduces success of credential theft attacks for authorization and privilege control. It uses passkeys, hardware-backed factors, and origin checks so teams can protect sign-in flows while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Access Phishing Resistance when a role gained new permissions, so the team could protect sign-in flows before the risk review began.”
Incident Response Policy Decision is a security authorization decision that determines whether an action should be allowed for security event handling. It uses identity, resource, context, and policy evaluation so teams can enforce least privilege while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Incident Response Policy Decision when an alert escalated to response, so the team could enforce least privilege before the risk review began.”
Identity Patch Window is a security remediation schedule that sets when a fix should be applied for user and workload identity. It uses risk severity, testing needs, and maintenance constraints so teams can repair systems without unnecessary disruption while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Identity Patch Window when a service account requested access, so the team could repair systems without unnecessary disruption before the risk review began.”
VPN Ingress Rule is a networking boundary rule that controls how external traffic enters a service for private tunnel connectivity. It uses hostnames, paths, protocols, and policy checks so teams can keep entry points predictable while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used VPN Ingress Rule when a remote user connected, so the team could keep entry points predictable before traffic crossed a service boundary.”
CDN Rate Limit is a networking traffic control that caps request volume over a period for content delivery and edge caching. It uses identity keys, windows, and response policies so teams can protect services from overload while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used CDN Rate Limit when a cache region served an asset, so the team could protect services from overload before traffic crossed a service boundary.”
HTTP Certificate Monitor is a networking security monitor that tracks certificate validity and configuration for application-layer request routing. It uses expiry checks, chain validation, and alerting so teams can avoid trust failures while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used HTTP Certificate Monitor when a client retried a request, so the team could avoid trust failures before traffic crossed a service boundary.”
CDN Resolver Cache is a networking performance layer that stores DNS answers for reuse until they expire for content delivery and edge caching. It uses TTL rules, cache keys, and invalidation so teams can reduce lookup latency while keeping evidence, reliability, and public-safe operational boundaries clear.
“The network engineering team used CDN Resolver Cache when a cache region served an asset, so the team could reduce lookup latency before traffic crossed a service boundary.”
Incident Response Attack Surface is a security exposure model that lists reachable systems, actions, and trust boundaries for security event handling. It uses asset inventory, route discovery, and permission mapping so teams can prioritize risk reduction while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Incident Response Attack Surface when an alert escalated to response, so the team could prioritize risk reduction before the risk review began.”
Data Loss Secret Scanner is a security preventive control that finds credentials before they spread for sensitive data exposure risk. It uses pattern matching, entropy checks, and allowlists so teams can stop accidental key exposure while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Data Loss Secret Scanner when a report included private metadata, so the team could stop accidental key exposure before the risk review began.”
Endpoint Policy Decision is a security authorization decision that determines whether an action should be allowed for user device and server protection. It uses identity, resource, context, and policy evaluation so teams can enforce least privilege while keeping evidence, reliability, and public-safe operational boundaries clear.
“The security team used Endpoint Policy Decision when a workstation reported suspicious activity, so the team could enforce least privilege before the risk review began.”