Compliance Testing
Compliance testing evaluates whether specific controls and processes are appropriately designed and operated effectively against defined requirements and periods. Compliance testing uses…
Security controls, fraud, operational risk and regulatory compliance.
Compliance testing evaluates whether specific controls and processes are appropriately designed and operated effectively against defined requirements and periods. Compliance testing uses…
Compliance Training is a compliance or privacy requirement that teaches employees and relevant partners the obligations, risks, expected behavior, controls, and escalation…
A computer security incident is an event that actually or potentially compromises information systems, data, services, security controls, or authorized use. Computer…
A CSIRT is a designated team that coordinates preparation, analysis, containment, recovery, communication, and learning for computer security incidents. Computer Security Incident…
Concentration risk is the possibility of disproportionate loss because exposure depends heavily on one asset, counterparty, provider, location, or control point. A…
Confirmation risk is the possibility that a payment considered sufficiently confirmed is later reversed, reorganized, delayed, or never becomes final. Confirmation Risk…
Consensus Attack is an attack or weakness pattern that manipulates or disrupts the mechanism nodes use to agree on valid transaction ordering…
Container Security is a security mechanism or control discipline that protects container images, registries, runtimes, orchestrators, hosts, secrets, and deployment pipelines throughout…
Content Security Policy is a browser-enforced policy that restricts which resources a web page may load, execute, embed, or connect to. Content…
Continuous Authentication is a security mechanism or control discipline that repeatedly evaluates identity and session confidence using ongoing behavioral, device, environmental, and…
Contract Verification is the process of demonstrating that published smart contract source code and compilation settings correspond to the bytecode deployed at…
Control Testing is the planned evaluation of whether a control is appropriately designed, implemented, and operating effectively over a defined period and…
Coordinated vulnerability disclosure is a structured process for reporting, validating, fixing, and communicating security flaws between researchers and affected organizations. Coordinated Vulnerability…
Correlation risk is the possibility that relationships between exposures strengthen during stress, reducing expected diversification or hedge effectiveness. A score for Correlation…
Cost of fraud is the total financial and operational burden created by fraudulent activity, prevention, investigation, recovery, and customer impact. A fraud…
A Counterfeit Token is a blockchain token created or presented to imitate another asset, project, brand, stablecoin, or official contract without authorization.…
Counterparty credit risk is the possibility that the other party to a financial agreement cannot meet payment or delivery obligations. A score…
Counterparty custody risk is the possibility that an external holder loses, freezes, misuses, or cannot return assets entrusted to its control. A…
Counterparty risk is the possibility that another party fails to perform, pay, deliver, safeguard assets, or meet contractual obligations as expected. A…
A credential is information, a cryptographic object, or a device used to establish identity, authority, qualification, or access rights. A credential provides…
Credential Dumping is the extraction of passwords, hashes, tokens, tickets, keys, or other authentication material from operating systems, memory, browsers, applications, or…
Credential leakage is the unintended exposure of passwords, keys, tokens, certificates, or secrets to unauthorized people, systems, or locations. Credential leakage occurs…
Credential Rotation is a security mechanism or control discipline that replaces an existing secret or cryptographic credential with a new one and…
Credential Security is a security mechanism or control discipline that protects identity and access evidence throughout creation, storage, transmission, use, recovery, rotation,…
Core concepts behind cryptocurrency, blockchain and distributed systems.
367 terms
Networks, consensus systems, protocols and blockchain infrastructure.
543 terms
Digital assets, token standards, cryptocurrencies and stablecoins.
351 terms