Insights on Crypto Payments, Infrastructure, and Operations

Security, Risk & Compliance

Security controls, fraud, operational risk and regulatory compliance.

673Terms
0Reviewed

Terms (673)

Risk-Based Supervision

Risk-Based Supervision is a measurable uncertainty or exposure that directs regulatory or oversight attention toward institutions, activities, and controls presenting the greatest…

Risk-Based Vulnerability Management (RBVM)

Risk-based vulnerability management prioritizes vulnerability remediation using business criticality, exploitability, threat activity, exposure, control context, and potential impact rather than severity score…

Routing Attack

Routing Attack is an attack or weakness pattern that manipulates or disrupts network path selection to intercept, delay, redirect, isolate, or deny…

Sanctions

Sanctions are legally binding restrictions imposed by governments or international bodies on dealings with specified persons, jurisdictions, sectors, goods, services, property, or…

Sanctions Compliance

Sanctions compliance is the governance and control framework used to meet applicable sanctions prohibitions, restrictions, licensing, blocking, and reporting duties. A sanctions…

Sanctions Evasion

Sanctions Evasion is conduct intended to conceal, reroute, misdescribe, or structure activity so that sanctions restrictions or controls are avoided. It is…

Sanctions List

Sanctions List is an official or controlled dataset identifying persons, entities, vessels, aircraft, addresses, or other targets subject to specified sanctions restrictions.…

Sanctions Match

Sanctions Match is a potential or confirmed correspondence between a screened party, address, transaction, or asset and sanctions data or program criteria.…

Sanctions Nexus

Sanctions Nexus is the factual connection that can bring a person, transaction, service, asset, or organization within the scope of a sanctions…

Sanctions Program

Sanctions Program is a defined body of sanctions authorities, prohibitions, designations, exemptions, licenses, guidance, and enforcement measures directed at a jurisdiction, activity,…

Sanctions Screening

Sanctions Screening is the risk-based comparison of customers, counterparties, beneficial owners, beneficiaries, wallet addresses, jurisdictions, and transactions against applicable sanctions restrictions and…

Sandwich Attack

Sandwich Attack is an attack or weakness pattern that surrounds a victim’s pending trade with attacker transactions to profit from the victim’s…

Secure Credential Storage

Secure Credential Storage is a security mechanism or control discipline that protects passwords, keys, tokens, and authentication secrets against disclosure, misuse, tampering,…

Security

Security is the protection of assets and objectives against unauthorized access, harm, manipulation, disclosure, disruption, or loss within a defined operating context.…

Security Alert

A security alert is a notification that observed activity may indicate a threat, control failure, vulnerability, or policy violation requiring evaluation. Security…

Security Architecture

Security architecture defines how trust boundaries, controls, identities, data, components, and recovery mechanisms work together across a system. It covers authentication, authorization,…

Security Architecture Review

A security architecture review is a structured evaluation of a system or change to determine whether trust boundaries, data flows, identities, cryptography,…

Security Assertion Markup Language (SAML)

Security Assertion Markup Language is an XML-based standard for exchanging authentication, attribute, and authorization information between an identity provider and a service…

Security Assessment

Security Assessment is an assurance or evaluation activity that evaluates whether defined security controls, designs, configurations, and practices adequately address risks within…

Security Audit

A security audit is an independent, evidence-based examination of security controls and practices against defined requirements, policies, or standards. Security Audit provides…

Security Audit Logging

Security audit logging records security-relevant events so actions, changes, access, and incidents can be investigated, monitored, and attributed. Security Audit Logging must…

Security Awareness Training

Security awareness training is an organized program that helps personnel recognize relevant threats, understand responsibilities, make safer decisions, and report suspected security…

Security Baseline

A security baseline is an approved minimum set of configurations, controls, and requirements applied to a defined class of systems or activities.…

Security Best Practices

Security best practices are broadly recommended methods that reduce common risks when adapted to a system’s specific context and threats. Security best…