Mandatory access controlAppArmor Profile Enforcement
AppArmor profile enforcement confines programs with path-oriented rules that describe the files, capabilities, networking, and execution behavior each application is permitted to use.
Decision analysis practiceArchitecture Trade-Off Analysis
Architecture trade-off analysis compares design options across security, mission, cost, performance, usability, resilience, complexity, and lifecycle consequences.
Threat terminologyAttack Vectors
An attack vector is the route, method, or mechanism an adversary uses to reach a target and attempt an unauthorized action.
Logging governance practiceAudit Log Retention and Integrity
Audit log retention and integrity controls preserve security-relevant records for operational analysis, investigations, accountability, compliance, and legal needs.
Digital identityAuthentication Factors
Authentication factors are independent categories of evidence used to prove control of an identity, commonly something known, possessed, or inherent to the user.
Systems security conceptBIOS and UEFI Security
BIOS and UEFI Security concerns the secure design, configuration, operation, monitoring, or recovery of computing platforms and connected devices.