Company Partners Our Teams Contact Blog
Services
Industries
Talk to an expert

Cybersecurity glossary

The terms that show up in security proposals, audits and reports — explained plainly, with what each one means in practice.

M

MalwareMalware (malicious software) is any program created to cause harm, steal data, spy, extort or give an attacker control over a system. Viruses, worms, trojans, ransomware and spyware are all types of malware.Threats MDR (Managed Detection and Response)MDR (Managed Detection and Response) is a managed security service in which a provider monitors the customer's environment, investigates threats and takes response actions, such as isolating an endpoint or blocking an account, instead of just sending alerts.Security operations MFA (multi-factor authentication)MFA (multi-factor authentication) is a login method that requires two or more factors from different categories, such as something you know (password), something you have (token or phone) and something you are (biometrics), to confirm the identity of whoever is signing in.Governance and compliance MITRE ATT&CKMITRE ATT&CK is a free, public knowledge base maintained by MITRE that catalogs the tactics and techniques adversaries use in real-world attacks. It provides a common vocabulary to describe, detect and test attack behavior.Security operations MSS / MSSP (Managed Security Services)MSS (Managed Security Services) is the outsourcing of security control operations, such as firewalls, VPN, IPS and endpoint protection, including administration, updates and monitoring. An MSSP (Managed Security Service Provider) is the company that delivers this service.Security operations MTTD and MTTRMTTD (Mean Time to Detect) is the average time between the start of malicious activity and its detection. MTTR (Mean Time to Respond) is the average time between detection and containment or resolution. Together, they measure how long an attacker operates in the environment.Security operations