Home Risk management and monitoring terms

139 terms

Risk management and monitoring terms

Cybersecurity isn’t just about stopping threats — it’s about knowing where they might come from next. This category covers the terms used to identify, measure, and manage cyber risks before they become incidents. From frameworks that guide decisions to tools that track real-time behavior, these are the words that shape smart, proactive security.

Heisenbug

A heisenbug is a software bug that seems to change its behavior when observed — for example, when diagnostic tools are engaged or when a programmer attempts to debug it.

Context-aware security

Context-aware security is a category of cybersecurity tools and practices that consider the circumstances of security events to determine whether they are potential threats.

Tactics, techniques, and procedures

Tactics, techniques, and procedures (TTPs) is a framework that different groups — from military units to cybersecurity teams — use to understand and respond to threats.

Windowing

Windowing refers to a process that involves taking a subset or “window“ of data points from a larger dataset for analysis.

White team

A white team is a group of IT specialists tasked with overseeing red vs blue exercises.

White hat hacker

A white hat hacker is an ethical security hacker who works with owners to identify flaws and vulnerabilities in their apps, systems, and networks.

Vulnerability management system

A vulnerability management system is a platform responsible for managing software vulnerabilities.

Vulnerability disclosure

Vulnerability disclosure refers to the process of reporting information about a security vulnerability to the appropriate parties.

The importance of risk management and monitoring terminology

Even the strongest defenses can’t stop every attack — but understanding the language of risk makes it easier to prepare for the unexpected, respond with confidence, and stay ahead of emerging threats.

Better trade-offs

Knowing terms like “attack surface,” “residual risk,” or “risk appetite” helps you weigh cost against exposure — and avoid chasing security perfection at the expense of practicality.

Spot small problems before they grow

Monitoring tools generate a lot of noise. Terms like “anomaly detection,” “SIEM,” and “baseline” help you understand what’s worth paying attention to.

Have a clearer picture of what’s at stake

Understanding the language of risk helps you prioritize efforts, communicate concerns effectively, and justify the tools or policies that make the biggest difference.

Two women learning cybersecurity terminology.

Online security starts with a click.

Stay safe with the world’s leading VPN

Can’t find an answer to your question?

Ask the questions that matter to you — and get answers from our cybersecurity experts.