Kernel of Truth

Acronyms

🔐 General Security Terms

AcronymMeaning
CIAConfidentiality, Integrity, Availability (core triad of infosec)
APTAdvanced Persistent Threat
TTPTactics, Techniques, and Procedures
IOCIndicator of Compromise
IOAIndicator of Attack
SOCSecurity Operations Centre
SIEMSecurity Information and Event Management
SOARSecurity Orchestration, Automation, and Response
IRIncident Response
DFIRDigital Forensics and Incident Response
EDREndpoint Detection and Response
XDRExtended Detection and Response

🧠 Frameworks & Methodologies

AcronymMeaning
MITRE ATT&CKMITRE Adversarial Tactics, Techniques & Common Knowledge
NISTNational Institute of Standards and Technology
CSFCybersecurity Framework (NIST CSF)
ISO/IECInternational Organisation for Standardisation / International Electrotechnical Commission
PCI DSSPayment Card Industry Data Security Standard
GDPRGeneral Data Protection Regulation
HIPAAHealth Insurance Portability and Accountability Act

💻 Networking & Protocols

AcronymMeaning
IPInternet Protocol
TCPTransmission Control Protocol
UDPUser Datagram Protocol
DNSDomain Name System
VPNVirtual Private Network
NATNetwork Address Translation
IDS/IPSIntrusion Detection/Prevention System
MACMedia Access Control (also: Message Authentication Code)
DHCPDynamic Host Configuration Protocol

📊 Tools & Technology

AcronymMeaning
ACLAccess Control List
IAMIdentity and Access Management
MFAMulti-Factor Authentication
DLPData Loss Prevention
FIMFile Integrity Monitoring
AVAntivirus
WAFWeb Application Firewall
NGFWNext-Generation Firewall

🎯 Attack & Threat Types

AcronymMeaning
DoS/DDoSDenial of Service / Distributed Denial of Service
MITMMan in the Middle
SQLiSQL Injection
XSSCross-Site Scripting
CSRF/XSRFCross-Site Request Forgery
RATRemote Access Trojan
C2/C&CCommand and Control
FUDFully Undetectable (malware)

🧰 Certifications

AcronymMeaning
CISSPCertified Information Systems Security Professional
CISMCertified Information Security Manager
CEHCertified Ethical Hacker
OSCPOffensive Security Certified Professional
CySA+Cybersecurity Analyst+
Security+CompTIA Security+
GCIHGIAC Certified Incident Handler
SSCPSystems Security Certified Practitioner