Term 271
CSPM
Cloud Security Posture Management (CSPM) is a security tool that continuously monitors cloud environments to detect and fix misconfigurations, compliance violations, and security risks.
Acronym study
Terms 271–300 of 1222 SK0-005 acronyms and key terms. Each entry includes a plain-English definition and a link to the full 800-word glossary page with exam context and practice questions.
Term 271
Cloud Security Posture Management (CSPM) is a security tool that continuously monitors cloud environments to detect and fix misconfigurations, compliance violations, and security risks.
Term 272
A Certificate Signing Request is a block of encoded data sent to a Certificate Authority to apply for a digital certificate.
Term 273
Cross-Site Request Forgery is an attack that tricks a user into performing an unwanted action on a web application where they are currently authenticated.
Term 274
CVE stands for Common Vulnerabilities and Exposures, which is a publicly available list of standardized identifiers for known security vulnerabilities in software and hardware.
Term 275
The Common Vulnerability Scoring System (CVSS) is a standardized framework used to rate the severity of security vulnerabilities on a scale from 0 to 10.
Term 276
CVSS Scoring is a standardized framework for rating the severity of security vulnerabilities, helping organizations prioritize fixes based on a numeric score from 0 to 10.
Term 277
CWE (Common Weakness Enumeration) is a structured catalog of software and hardware security weaknesses that helps IT professionals identify, prevent, and mitigate vulnerabilities in systems.
Term 278
DAS is a storage device directly connected to a computer without a network, offering fast local access.
Term 279
DAST (Dynamic Application Security Testing) is a security testing method that finds vulnerabilities in running web applications by simulating real attacks from the outside.
Term 280
Data lifecycle management is the process of managing data from its creation to its deletion, ensuring it is stored, used, and disposed of in a way that meets security, compliance, and business needs.
Term 281
Data Loss Prevention (DLP) is a set of tools and processes that help organizations stop sensitive information from being shared, leaked, or stolen, whether accidentally or on purpose.
Term 282
Data masking is a security technique that replaces sensitive data with realistic but fictional data so it can be used safely in non-production environments.
Term 283
Data remanence is the residual representation of data that remains on a storage medium even after attempts to erase or remove it.
Term 284
A data replication strategy is a plan for copying and synchronizing data across multiple locations to ensure availability, durability, and performance.
Term 285
Data retention is the practice of keeping data for a specific period to meet legal, business, or compliance needs, and then securely disposing of it.
Term 286
Data security is the practice of protecting digital information from unauthorized access, corruption, or theft throughout its lifecycle.
Term 287
A Data VLAN is a virtual local area network configured on a switch to carry user-generated traffic, separating it from management, voice, or other types of network traffic.
Term 288
DCI connects two or more data centers over a network, enabling resource sharing, disaster recovery, and workload mobility.
Term 289
A Dedicated Host is a physical server in the cloud that is reserved exclusively for your use, giving you control over which instances run on that host and visibility into the underlying hardware.
Term 290
A Dedicated Interconnect is a direct, private physical connection between your on-premises network and a cloud provider's network, bypassing the public internet for faster, more reliable, and more secure data transfer.
Term 291
A configuration in IT systems where security services or appliances operate in an isolated, single-purpose environment to prevent interference with other functions and reduce attack surface.
Term 292
The Default VLAN is VLAN 1 on most Cisco switches and it is the VLAN to which all switch ports belong by default until they are assigned to a different VLAN.
Term 293
Microsoft Defender for Cloud is a cloud security posture management (CSPM) and cloud workload protection platform (CWPP) that provides unified security management and threat protection across hybrid and multi-cloud environments.
Term 294
Defender for Cloud Apps is a Microsoft cloud access security broker (CASB) that helps you discover, protect, and govern your cloud applications and data across multiple cloud environments.
Term 295
Microsoft Defender for Endpoint is a cloud-delivered enterprise security solution designed to protect devices from cyber threats using behavioral analysis, machine learning, and automated investigation.
Term 296
Defender for Identity is a cloud-based security solution that detects, investigates, and responds to advanced identity threats targeting on-premises Active Directory and cloud identities.
Term 297
Microsoft Defender for Office 365 is a cloud-based email security service that protects organizations against advanced threats like phishing, malware, and business email compromise by scanning emails, attachments, and links in real time.
Term 298
A Defender policy is a set of security rules configured in Microsoft 365 Defender that controls how endpoint detection and response (EDR), antivirus, firewall, and other protection features behave on managed devices.
Term 299
Defense in depth is a cybersecurity strategy that uses multiple layers of security controls to protect information and systems, so if one layer fails, another layer is already in place to stop the attack.
Term 300
Delete device is the process of removing a device from an organization's management system, typically in Microsoft Intune or Azure AD, which revokes its access to corporate resources and management policies.