Insights on Crypto Payments, Infrastructure, and Operations

Security, Risk & Compliance

Security controls, fraud, operational risk and regulatory compliance.

673Terms
0Reviewed

Terms (673)

Client Bug Risk

Client Bug Risk is the risk that a defect in one blockchain software client causes incorrect validation, state, networking, signing, transaction, or…

Client Diversity Risk

Client Diversity Risk is the risk created when a blockchain network or critical service depends excessively on one software implementation, allowing a…

Cloud Access Security Broker (CASB)

A Cloud Access Security Broker (CASB) is a security control layer that provides visibility and policy enforcement between users, workloads, and cloud…

Cloud Security

Cloud Security is a security mechanism or control discipline that protects hosted data, applications, identities, infrastructure, and services through coordinated provider and…

Cloud Security Posture Management (CSPM)

Cloud Security Posture Management (CSPM) is the continuous discovery and assessment of cloud resources, configurations, identities, policies, and control settings to identify…

Code Audit

Code Audit is an assurance or evaluation activity that systematically examines source code, dependencies, and implementation choices for security flaws, defects, and…

Code Signing

Code Signing is the use of a digital signature to bind executable code, scripts, drivers, updates, or software packages to a signing…

Cold Wallet Risk

Cold wallet risk is the possibility of losing or exposing offline crypto assets through key handling, backups, devices, procedures, or physical compromise.…

Command Injection

Command Injection is a vulnerability in which untrusted input causes an application to execute unintended operating-system commands or command-line arguments. It is…

Commingling Risk

Commingling Risk is the risk that customer, corporate, or separately owned assets are combined without adequate legal, accounting, operational, or technical separation.…

Committee Signature

A committee signature proves that a required subset of designated participants approved a message under an agreed signing scheme. A committee signature…

Common Vulnerability Scoring System (CVSS)

CVSS is an open framework for describing software vulnerability characteristics and calculating standardized severity scores and vector strings. Defenses against Common Vulnerability…

Compliance Alert

A compliance alert is a system-generated or manually raised notification that activity may violate a rule, policy, threshold, or obligation. A compliance…

Compliance Audit

Compliance Audit is a compliance or privacy requirement that independently evaluates whether an organization satisfies defined legal, regulatory, contractual, or internal requirements…

Compliance Breach

A compliance breach occurs when an organization or individual fails to meet an applicable law, regulation, license, contract, or mandatory policy. Compliance…

Compliance Control

A compliance control is a designed measure that prevents, detects, corrects, or evidences adherence to a defined obligation or policy. A compliance…

Compliance Evidence

Compliance evidence is reliable information demonstrating whether required controls, decisions, records, approvals, and obligations were satisfied during a defined period. Compliance evidence…

Compliance Exception

A compliance exception is an approved or observed departure from a required rule, control, procedure, or expected compliance condition. A compliance exception…

Compliance Management System (CMS)

A Compliance Management System (CMS) is the integrated governance, policies, processes, controls, training, monitoring, issue management, reporting, and accountability used to identify…

Compliance Monitoring

Compliance Monitoring is the ongoing or periodic review of activities, transactions, communications, records, and controls to determine whether operations follow applicable requirements…

Compliance Officer

Compliance Officer is a compliance or privacy requirement that advises, monitors, and challenges organizational activity to help meet applicable laws, regulations, licenses,…

Compliance Policy

A compliance policy sets mandatory organizational principles, responsibilities, and rules for meeting defined legal, regulatory, contractual, and ethical obligations. A compliance policy…

Compliance Program

A compliance program is the coordinated governance, policies, controls, training, monitoring, reporting, investigations, and remediation used to manage obligations. A compliance program…

Compliance Risk

Compliance risk is the potential for legal, financial, operational, or reputational harm from failing to meet applicable requirements or commitments. Compliance risk…