Term 1081
Target of evaluation
The Target of Evaluation (TOE) is the specific system, product, or component that is formally assessed against a set of security requirements during a security evaluation or certification process.
Acronym study
Terms 1081–1110 of 1222 SK0-005 acronyms and key terms. Each entry includes a plain-English definition and a link to the full 800-word glossary page with exam context and practice questions.
Term 1081
The Target of Evaluation (TOE) is the specific system, product, or component that is formally assessed against a set of security requirements during a security evaluation or certification process.
Term 1082
A target unit is a defined logical or physical entity within a system management framework, used to specify where an administrative action, policy, or configuration change is applied, typically in enterprise environments with many devices.
Term 1083
A Task in Azure DevOps is a predefined, reusable step that performs a specific action during a build or release pipeline, like compiling code or running tests.
Term 1084
TAXII (Trusted Automated eXchange of Indicator Information) is a standardized protocol that enables the automated sharing of cyber threat intelligence (CTI) between organizations and security systems.
Term 1085
TCB (Trusted Computing Base) is the collection of all hardware, firmware, and software components in a system that are essential to enforcing its security policy.
Term 1086
A TCP Proxy Load Balancer is a network device that terminates incoming TCP connections from clients, establishes a new TCP connection to a backend server, and relays data between the two, enabling advanced traffic management and security features.
Term 1087
A technical control is a security mechanism implemented through hardware, software, or firmware that protects the confidentiality, integrity, and availability of IT systems and data.
Term 1088
Technical management practice is the ITIL term for the set of activities that plan, coordinate, and oversee the technical resources, skills, and infrastructure needed to deliver IT services.
Term 1089
TEMPEST is a U.S. government standard for protecting electronic equipment from emitting electromagnetic signals that could be intercepted to steal sensitive information.
Term 1090
TKIP is a security protocol used in Wi-Fi networks to strengthen encryption by dynamically changing the encryption key for each data packet.
Term 1091
Tenant attach is a Microsoft device management feature that links on-premises Configuration Manager hierarchies to the Microsoft Intune cloud service for unified endpoint management.
Term 1092
TACACS+ is a network security protocol that separates authentication, authorization, and accounting to control who can access network devices and what they can do.
Term 1093
TACACS+ is a remote authentication protocol that uses three separate servers to verify who you are, what you are allowed to do, and record what you did on network devices.
Term 1094
A DNS Text Record (TXT record) is a type of resource record that stores human-readable or machine-readable text data associated with a domain name.
Term 1095
theHarvester is an open-source intelligence (OSINT) tool used to gather emails, subdomains, IP addresses, and other public data about a target from search engines and public sources.
Term 1096
Thermal paste is a heat-conductive substance applied between a computer's processor and its cooler to improve heat transfer and prevent overheating.
Term 1097
Thinking and working holistically means considering the entire IT service system, including all processes, technologies, and people, rather than focusing only on a single component or issue.
Term 1098
Third-party authorisation is when a system relies on an external entity to verify a user's identity or permissions before granting access to resources.
Term 1099
A threat actor is any person or group that intentionally causes harm to digital systems, networks, or data.
Term 1100
Threat analytics is the process of using threat intelligence, machine learning, and behavioral data to identify, assess, and predict cybersecurity threats in real time.
Term 1101
Threat emulation is the proactive simulation of real-world cyberattacks within a controlled environment to test an organization's defenses, identify vulnerabilities, and improve security posture.
Term 1102
A Microsoft 365 security tool that provides real-time interactive reports to investigate and analyze threats detected by Microsoft Defender for Office 365.
Term 1103
Threat hunting is a proactive cybersecurity practice where analysts actively search networks, endpoints, and logs for hidden threats that have evaded automated security tools.
Term 1104
Threat intelligence is evidence-based knowledge about existing or emerging cyber threats that helps organizations defend against attacks.
Term 1105
A threat model is a structured approach to identifying, analyzing, and prioritizing potential security threats to a system or application.
Term 1106
Threat modeling for Azure is a structured process to identify, analyze, and prioritize potential security threats to cloud applications and infrastructure hosted on Microsoft Azure, so teams can design effective defenses before deployment.
Term 1107
Threat modelling is a structured approach to identifying, evaluating, and documenting potential security threats to a system so that defenses can be built proactively.
Term 1108
TKIP is a security protocol used in WPA to replace WEP's static key with dynamic per-packet keys, ensuring data integrity.
Term 1109
TLS Certificate Management is the process of creating, deploying, renewing, and revoking digital certificates that encrypt communication between computers over a network.
Term 1110
TPM (Trusted Platform Module) is a dedicated hardware chip on a computer's motherboard that stores cryptographic keys, passwords, and certificates to secure the system against unauthorized access and tampering.