Acronyms Flashcards
(98 cards)
PFI
payment card industry forensic investigators
FISMA
federal information security modernization act, for federally employed/contracted infosec workers
GLBA
Gramm Leach Bliley Act, US federal law for financial information
GDPR
general data protection regulation, EU security and privacy requirements
FERPA
family educational rights and privacy act, security/privacy requirements for US student records
SOX
sarbanes oxley act, US federal law for corporate financial reporting
STIX
structured threat information eXpression, XML language
TAXII
trusted automated exchange of intelligence information protocol
OASIS
organization for the advancement of structured information standards, manages STIX
NPSA
national protective security agency, UK security agency
SCAP
security content automation protocol, NIST standardized approach for communicating security related information i.e. CVE
CCE
common configuration enumeration
CPE
common platform enumeration i.e. hardware, software, OS
CVE
common vulnerabilities and exposures
CVSS
common vulnerability scoring system
XCCDF
extensible configuration checklist description format, defines security checklists, benchmarks, and configuration rules
OVAL
open vulnerability and assessment language, specifies low level testing procedures used by checklists
COBIT
control objectives for information and related technologies
ISACA
information systems audit and control association, organization that developed COBIT
SSAE
statement on standards for attestation engagements, standards for audits
ROT13
rotate 13 substitution cipher
SHS
secure hash standard aka FIPS 180
FIPS
federal information processing standards
HMAC
hash based authentication code, algorithm for partial digital signature