Cybersecurity terminology · MLC-0102
Cybersecurity terms: S (548)
- Superencryption1. An encryption operation for which the plaintext input to be transformed is the ciphertext output of a...
- Superior certification authorityIn a hierarchical public key infrastructure (PKI), a certification authority (CA) who has certified the...
- Superuser1. A user who is authorized (and, therefore, trusted) to perform security-relevant functions that ordinary...
- Supervised learningA type of machine learning in which a model learns to predict explicit (often human-generated) labels or...
- Supervisory control1. A term that is used to imply that the output of a controller or computer program is used as input to other...
- Supervisory control and data acquisitionA generic name for a computerized system that is capable of gathering and processing data and applying...
- Supplemental controlsControls that may be added to address specific threats or attacks in addition to those controls specified in...
- Supplier1. Organization or individual that enters into an agreement with the acquirer or integrator for the supply of...
- Supplier’s declaration of conformityDeclaration where the conformity assessment activity is performed by the person or organization that provides...
- Supply chain1. A linked set of resources and processes between multiple tiers of developers that begins with the sourcing...
- Supply chain attackAn incident where an adversary exploits vulnerabilities in the product or service supply network of the...
- Supply chain element1. Organizations, entities, or tools employed for the research and development, design, manufacturing...
- Supply chain risk1. The risk that an adversary may sabotage, maliciously introduce unwanted function, or otherwise subvert the...
- Supply chain risk assessmentA systematic examination of supply chain risks, likelihoods of their occurrence, and potential impacts.
- Supply chain risk informationIncludes, but is not limited to, information that describes or identifies: (1) Functionality of covered...
- Supply chain risk management (SCRM)1. A systematic process for managing supply chain risk by identifying susceptibilities, vulnerabilities, and...
- SupportTo be capable of providing a service or perform a function that is required or desired; to agree with a...
- Support a security strength1. A security strength of s bits is said to be supported by a particular choice of algorithm, primitive...
- Support vector machinesModels that implement a decision function in the form of a hyperplane that serves to separate (i.e...
- Supporting capabilitiesCapabilities that provide functionality that supports the other IoT capabilities. Examples of supporting...
- Supporting partiesProviders of external system services to the manufacturer through a variety of consumer-producer...
- Supporting servicesProviders of external system services to the manufacturer through a variety of consumer-producer...
- Supportive relationship mapping1. A concept relationship style that identifies how one concept can or does help achieve another concept.
- SuppressionOne of the most commonly used ways of protecting sensitive cells in a table is via suppression. It is obvious...
- Suppression measureAction, procedure, modification, or device that reduces the level of, or inhibits the generation of...
- Surge protectorA device designed to protect electrical devices from voltage spikes or dips.
- Survivability1. The ability of a system to minimize the impact of a finite- duration disturbance on value delivery (i.e...
- SusceptibilityThe inability to avoid adversity.
- Suspended state1. A lifecycle state of a key whereby the use of the key for applying cryptographic protection has been...
- Suspension1. The process of changing the status of a valid certificate to suspended (i.e., temporarily invalid).
- SVM, see Support vector machines
- SW1First byte of a two-byte status word
- SW2Second byte of a two-byte status word
- SwA1. The level of confidence that software is free from vulnerabilities, either intentionally designed into the...
- SWAMSee Capability, Software Asset Management.
- SWID, see Software identification
- SWID tagA SWID tag is an ISO 19770-2 compliant XML file describing a software product. It is typically digitally...
- Switch1. A network device that filters and forwards packets between LAN segments.
- S_XMSSA secret random value used for pseudorandom key generation in XMSS.
- Sybil attackA cybersecurity attack wherein an attacker creates multiple accounts and pretends to be many persons at once.
- SymbolThe value of the noise source output (i.e., sample value).
- Symmetric Card Authentication Key Authentication (SYM-CAK)An authentication mechanism where the PIV Card is identified using the CHUID or another data element, and...
- Symmetric cryptography1. Cryptography that uses the same key for both encryption and decryption.
- Symmetric key1. A cryptographic key that is used to perform both the cryptographic operation and its inverse (e.g., to...
- Sync fabricAny on-premises, cloud-based, or hybrid service used to store, transmit, or manage authentication keys...
- Syncable authenticators1. Software or hardware cryptographic authenticators that allow authentication keys to be cloned and exported...
- SynchronizationThe process of setting two or more clocks to the same time.
- Synchronization protocols1. Protocols that allow users to view, modify, and transfer/update data between a cell phone and personal...
- Synchronous crypto-operationMethod of on-line cryptographic operation in which cryptographic equipment and associated terminals have...
- Synchronous trainingTraining in which instructors and learners are scheduled to participate together in a virtual or physical...
- Syntactic matchinguses internal structures present in digital objects. For example, the structure of a TCP network packet is...
- SyntaxThe rules for constructing or recognizing the acceptable sentences of a language.
- Synthetic data generation1. A process in which seed data are used to create artificial data that have some of the statistical...
- Synthetic datasetThe absolute error divided by the unaltered query output.
- Synthetic identifierAn identifier that is assigned to an asset in the context of some management domain.
- Synthetic identity fraudThe use of a combination of personal information to fabricate a person or entity to commit a dishonest act...
- SyntonizationThe process of setting two or more oscillators to the same frequency.
- SyslogA protocol that specifies a general log entry format and a log entry transport mechanism.
- System1. See information system.
- System administrator (SA)1. Individual responsible for the installation and maintenance of an information system, providing effective...
- System and communications protection, see SC
- System assuranceThe justified confidence that the system functions as intended and is free of exploitable vulnerabilities...
- System authorityAn FCKMS role that is responsible to executive-level management (e.g., the Chief Information Officer) for the...
- System boundary1. All components of an information system to be authorized for operation by an authorizing official and...
- System categorizationThe characterization of a manufacturing system, its components, and operations, based on an assessment of the...
- System component1. A discrete identifiable information or operational technology asset that represents a building block of a...
- System context1. The specific system elements, boundaries, interconnections, interactions, and operational environment that...
- System developerAn individual group, or organization that develops hardware/software for distribution or sale.
- System Development Life Cycle (SDLC)The scope of activities associated with a system, encompassing the system’s initiation, development and...
- System development lifecycle, see SDLC
- System element1. A hardware, software, or firmware part or element of a larger system with well-defined inputs and outputs...
- System flash memoryThe non-volatile storage location of system BIOS, typically in electronically erasable programmable read-only...
- System highHighest security level supported by an information system.
- System high security modeThe mode of operation in which system hardware/software is only trusted to provide need-to-know protection...
- System indicatorSymbol or group of symbols in an off-line encrypted message identifying the specific cryptosystem or key used...
- System initialization1. A function in the lifecycle of keying material; setting up and configuring a system for secure operation.
- System integrator1. Those organizations that provide customized services to the acquirer including for example, custom...
- System interconnection1. The direct connection of two or more information systems for the purpose of sharing data and other...
- System life cycle1. Period that begins when a system is conceived and ends when the system is no longer available for use.
- System lowThe lowest security level supported by a system at a particular time or in a particular environment.
- System Management Mode (SMM)A high-privilege operating mode found in x86-compatible processors used for low-level system management...
- System of record1. A collection of records that contain information about individuals and are under the control of an agency...
- System of records, see System of record
- System of records notice1. A notice that federal agencies publish in the Federal Register to describe their system of record.
- System of systems1. System of interest whose system elements are themselves systems; typically, these entail large-scale...
- System or device certificateThe system or device whose name appears as the subject in a certificate.
- System ownerNote: Examples of systems or devices are workstations, guards, firewalls, routers, web server, database...
- System owner (or program manager)1. Official responsible for the overall procurement, development, integration, modification, or operation and...
- System privacy officerIndividual with assigned responsibility for maintaining the appropriate operational privacy posture for a...
- System privacy requirement1. System requirements that have privacy relevance. System privacy requirements define the protection...
- System promptApplication-specific instructions provided in-context to a GenAI system by the model developer or application...
- System security officer1. Individual with assigned responsibility for maintaining the appropriate operational security posture for...
- System security plan1. A document that describes how an organization meets or plans to meet the security requirements for a...
- System security requirement1. System requirement that has security relevance. System security requirements define the protection...
- System serviceA capability provided by a system that facilitates information processing, storage, or transmission.
- System testA test performed on a complete system to evaluate its compliance with specified requirements.
- System user1. An individual or (system) process acting on behalf of an individual that is authorized to access a system.
- Systematic stratified samplingA method of sampling where samples are taken at a regular interval.
- Systemic biasA form of bias that results from rules, processes, or norms that advantage certain social groups and...
- System-related privacy risk1. Those risks that arise from the likelihood that a given operation the system is taking when processing PII...
- System-related security risk1. Risk that arises through the loss of confidentiality, integrity, or availability of information or systems...
- Systems and services acquisition, see SA
- Systems engineering1. A transdisciplinary and integrative approach to enable the successful realization, use, and retirement of...
- Systems Management Server, see SMS
- Systems privacy engineerIndividual assigned responsibility for conducting systems privacy engineering activities.
- Systems privacy engineering1. A specialty engineering discipline of systems engineering. It applies scientific, mathematical...
- Systems security engineer1. Individual who practices the discipline of systems security engineering, regardless of their formal title...
- Systems security engineering1. A transdisciplinary and integrative approach to enable the successful secure realization, use, and...
- Systems security officer (SSO)See information systems security officer (ISSO).
- System-specific controlA security or privacy control for an information system that is implemented at the system level and is not...
- System-specific security control1. A security or privacy control for an information system that is implemented at the system level and is not...
548 of 4,669 terms in Cybersecurity terminology (MLC-0102). Request the full dataset.