Check Point SASE Cybersecurity Glossary
Check Point SASE Network Security Glossary
From Application Access to Zero Trust, our glossary has your network and information security terms covered from A-Z.
Network Security
What is a Model Context Protocol (MCP) Server?
Remote Desktop Protocol (RDP) is a piece of software that is native to Windows that allows users to connect to a Windows computer from a remote location and access that desktop from an alternative device. Businesses can utilize RDP to facilitate remote working, giving their employees a direct method of connecting to local devices.
What is a Remote Desktop Protocol (RDP) Solution?
Remote Desktop Protocol (RDP) is a piece of software that is native to Windows that allows users to connect to a Windows computer from a remote location and access that desktop from an alternative device. Businesses can utilize RDP to facilitate remote working, giving their employees a direct method of connecting to local devices.
What Is FQDN Split Tunneling?
FQDN split tunneling is a method of configuring which domains will route through a VPN’s encrypted tunnel that uses fully qualified domain names instead of IP addresses. FQDN split tunneling is a powerful strategy that can reduce administrative burden, speed up VPN connections, and improve continuity.
What Are Tenant Restrictions?
Tenant Restrictions are security policies that limit user access to external tenants or organizations in cloud environments, preventing unauthorized data sharing, cross-tenant collaboration, and compliance violations.
What Is Data Residency?
Data residence refers to the legal and regulatory requirement that dictates where an organization’s data is stored, processed, and managed, ensuring compliance with local data protection laws and jurisdictional policies.
What is a Hybrid Workforce?
With the current trend of a hybrid workforce, learn about best practices to offering a hybrid work model that allows your organization to offer the best security for your network.
What is a CASB Architecture?
A Cloud Access Security Broker (CASB) is a security solution designed to protect your business data while utilizing cloud applications. It acts as a gateway positioned between the cloud service provider and the end user, monitoring traffic to and from the cloud.
Agent vs. Agentless Security
Deciding between agent or agentless security? Discover the advantages and disadvantages of both agent types and which is the right fit for your business.
What Are the Benefits of CASB?
A Cloud Access Security Broker (CASB) enhances security by providing visibility into cloud usage, detecting shadow IT, and enforcing access controls. It protects sensitive data through encryption, data loss prevention (DLP), and threat detection while ensuring compliance with regulations like GDPR and HIPAA.
What Is a VPN Proxy Server?
A VPN proxy server creates a safe, private network between your device and the internet. Remote server routing masks your location while keeping your information private.
What Is a Cloud Access Security Broker (CASB)?
A Cloud Access Security Broker (CASB) acts as an intermediary between cloud service users and cloud providers, enforcing security policies and providing visibility into cloud application usage.
What is Breach Detection?
Breach detection identifies unauthorized access to sensitive data and systems within an organization. IT personnel use monitoring tools to spot suspicious activities that signal potential attacks or data theft.
What are Managed Service Providers (MSP)?
An MSP or Managed Service Provider is a third-party company that provides IT outsourcing services to other businesses. Curious to see how much an MSP can save your business? Read on.
What Is Threat Prevention?
Threat prevention is a security measure designed to identify, mitigate, and block cyber threats before they can cause harm. It includes proactive strategies like malware detection, intrusion prevention, and behavioral analysis to stop attacks before they reach systems.
What Is Threat Detection and Prevention?
Threat detection and prevention provide critical shields, allowing businesses to identify and neutralize security risks before they can cause lasting damage.
What is SSE Architecture?
Secure Access Service Edge (SASE) is a cloud-based security framework that combines software-defined networking (SD-WAN) with...
What Is SASE?
Secure Access Service Edge (SASE) is a cloud-based security framework that combines software-defined networking (SD-WAN) with...
What Is HTTPS?
HTTPS (Hypertext Transfer Protocol Secure) is a secure version of HTTP, the primary protocol...
What Is a Reverse Proxy?
A reverse proxy is a type of proxy server that sits between client devices and backend servers to manage incoming requests...
What is Security Service Edge (SSE)?
Security Service Edge (SSE) is a cloud-based solution that secures user access to digital resources and private applications, whether in the cloud or on-premises.
What Is a Secure Web Gateway (SWG)?
A Secure Web Gateway (SWG) is a network security solution that protects users from online threats by enforcing security policies, filtering URLs...
What is Single Sign-On (SSO)?
Single Sign-On (SSO) is an authentication method allowing users to access multiple applications and services with a single login credentials.
What Is Branch Networking?
Branch networking connects an organization’s geographically dispersed offices or locations, facilitates secure communication...
What Is SASE Architecture?
Secure Access Service Edge (SASE) is an emerging cloud-native architecture that converges networking and security capabilities into a unified...
What Is Enterprise Web Filtering?
Enterprise web filtering restricts access to harmful, inappropriate, or otherwise non-productive web content on an organization’s network.
What Is Wi-Fi Security?
WFH stands for “work from home,” or “working from home.” It is the new way of working post Covid-19 pandemic, leaving out the traditional office setting.
What Is SaaS?
WFH stands for “work from home,” or “working from home.” It is the new way of working post Covid-19 pandemic, leaving out the traditional office setting.
What Is Zero Trust Architecture?
Zero trust architecture (ZTA) is a security principle that assumes no users, whether based inside or outside an organization, can be trusted by default.
What Is a Virtual Private Network (VPN)?
A Virtual Private Network (VPN) is a service that creates a secure, encrypted connection between your device and the internet.
What Is a Backbone Network?
WFH stands for “work from home,” or “working from home.” It is the new way of working post Covid-19 pandemic, leaving out the traditional office setting.
What Is Network As A Service (NaaS)?
Network as a Service (NaaS) is a cloud-based networking model that allows businesses to deploy, manage...
What Is Network Architecture?
Network architecture refers to how a computer network is designed. It’s the blueprint for how certain hardware and software components are organized...
What Is The OSI Model?
The OSI Model (Open Systems Interconnection Model) is a conceptual framework used to describe the functions of a networking system.
What Is Least Privilege Access?
Least Privilege Access is a fundamental cybersecurity and cloud network security principle designed to limit user accounts to the minimum access required.
What Is Work From Home (WFH)?
WFH stands for “work from home,” or “working from home.” It is the new way of working post Covid-19 pandemic, leaving out the traditional office setting.
What Is Content Filtering?
Content filtering is a process of screening and restricting access to specific types of content, usually online. This can be done to protect users from harmful or inappropriate material, to enforce company policies.
What Is Remote Work Security?
Access controls are responsible for determining who can access certain resources in an organization. Failure to restrict access can have great repercussions.
What Is Zero Trust Application Access?
Zero Trust Application Access (ZTAA) is a security approach ensuring only authenticated and authorized users can access specific applications...
What Is Mobile Device Management?
Mobile Device Management (MDM) is a technology that allows organizations to control and manage mobile devices.
What Is SSL Inspection?
SSL inspection is the process of intercepting encrypted traffic and scanning it for malicious threats before allowing it to enter a network.
What Is BYOD Security?
BYOD security refers to the measures taken to protect an organization’s network and data when employees use their devices for work.
What Is Web Security?
Web security is a broad category of security solutions that protect your users, devices, and wider network against internet-based cyberattacks. It’s designed to secure your online activities and data.
What Is DNS Filtering?
DNS filtering is a technique used to control access to websites and online content by filtering DNS queries based on predefined criteria.
What Is VPN Security?
Virtual Private Networks (VPNs) are a common cybersecurity tool commonly deployed at commercial and enterprise levels, with their defense against IP tracking.
What Is Malware?
It is software designed to damage computer systems silently, the cost can be daunting (the record being $38 billion in damages).
What Is Application Control?
Application control is a security measure that regulates and manages the execution of software applications on a computer or network. It involves defining...
What Is an Indicator of Compromise (IoC)?
An indicator of compromise, often known by the acronym IoC, is a marker left in a system that a breach or cybersecurity event has occurred or is currently in the process of happening.
What Is Zero Phishing?
Zero phishing refers to all of the cybersecurity strategies that an organization employs to reduce the chance of a phishing event from occurring to zero.
What Is a UDP Flood Attack?
A UDP flood is a denial-of-service attack in which an attacker overwhelms a targeted server with a flood of User Datagram Protocol (UDP) packets, making the server unresponsive to legitimate traffic.
What Is an Application Layer DDoS Attack?
Protect your organization from an Application Layer Denial of Service (DDoS) attack with Perimeter 81’s comprehensive cloud network security solution, easily deployed across hybrid networks.
What is a Threat Actor?
Cyber threat actors are individuals or groups who pose significant risks to organizations and individuals by exploiting vulnerabilities for various motives, such as monetary gain, political agendas, or simply causing disruption.
What is a Breach and Attack Simulation (BAS)?
Breach and Attack Simulation (BAS) is a method used by security teams to test and validate the effectiveness of their security controls...
What Is a Botnet?
A botnet is a network of compromised computers or devices controlled by a malicious actor to perform coordinated tasks without the owners’ knowledge, often used for cybercrime and large-scale attacks.
What Is a DDoS Attack?
A Distributed Denial of Service (DDoS) attack overwhelms a target system with traffic volume from multiple sources, rendering it inaccessible to legitimate users.
What Is a Phishing Attack?
A phishing attack – better known as phishing – is when a malicious actor attempts to steal account details, personal information, or financial details from an individual.
What Is a Zero-Day DDoS Attack?
A zero-day DDoS (distributed denial-of-service) vulnerability is a security flaw that remains undiscovered by a server provider and its clients – until the zero-day vulnerability is used to bring down servers and drastically bloat latency.
What Is Spear Phishing?
Spear phishing is a highly personalized form of phishing where a team of hackers conducts extensive research on a person before sending a tailored phishing scam to them. Most of the time, hackers focus on an executive or someone they find public information about to make the scam more convincing.
What Is a Threat Scenario?
A threat scenario is a fictional scenario created by a company in which they predict potential cyber attacks that could happen to their organization, map what the effects would be, and document the best potential course of action.
What Is Threat Emulation?
Threat emulation – also known as adversary emulation – is a cybersecurity defense strategy where professionals test their own network security defenses by emulating typical threat vectors.
What Is File Sanitization?
File sanitization, or document sanitization, cleanses documents and removes hidden content that could pose privacy or security threats.
What Is a Zero-Day Attack?
Zero-day attacks exploit software flaws that developers have yet to discover or fix. Attackers take advantage of these vulnerabilities to gain unauthorized access or cause harm. Such attacks are tough to defend against because they hit before any available patches.
What Is Zero Trust Network Access?
Zero Trust Network Access is a concise framework that enables and maintains secure access to internal applications and resources.
What is SSH (Secure Shell)?
Secure Shell (SSH) is a cryptographic network protocol used for secure remote access to network devices and systems over an unsecured network.
What Is a Reduced Attack Surface?
A reduced attack surface refers to an organization that has minimized the number of ways a malicious actor can gain access to it. An attack surface comprises all potential entry points hackers can exploit to infiltrate a network or access sensitive data.
What Is a VPN Concentrator?
A VPN concentrator is a device that extends a VPN router’s capabilities and ensures a secure connection between a company’s remote endpoints and its data and resources.
What Is a Zero Trust Architecture?
Zero trust architecture operates on the idea that no users should be trusted by default, and it is bolstered by the trust principle of least privilege access and limited access to resources.
What is a Remote Access Service?
Remote access is the ability to access information from an off-site device.
Cyber Security Solution: Everything You Need to Know
A cyber security solution minimizes digital risks by protecting our entire IT landscape, including systems, apps, devices, software, data, and the people and identities behind them.
Exploring the Fundamentals of Secure Remote Access
Secure Remote Access represents security measures and technologies that protect an organization’s digital assets by ensuring access is restricted to authorized users only.
SaaS Application Security: Everything You Need to Know
SaaS Application Security is using protective measures for software applications delivered through the Software as a Service (SaaS) model to your business.
HIPAA
The HIPAA Act is a federal law that requires the creation of national standards in order to protect sensitive patient health information.
Business VPN
A Next-gen Business VPN simplifies the secure access to all your internal and cloud-based resources such as staging servers and company databases.
Site-to-Site VPN
Easily integrate a unified security solution across your organization’s cloud-hybrid network, with the Perimeter 81 Site-to-Site VPN.
What is an Open Source VPN?
An Open-Source VPN, or Virtual Private Network, is a technology that establishes a secure and encrypted connection over the internet, allowing users to browse the web and access resources while ensuring data confidentiality and privacy.
What is Network Threat Hunting?
Network Threat Hunting is a proactive cybersecurity strategy aimed at identifying and mitigating potential threats within a network before they escalate. Unlike traditional cybersecurity measures that primarily focus on reactive approaches, threat hunting involves actively seeking out signs of malicious activity in real-time.
What Is Cloud Collaboration?
Cloud collaboration refers to the use of online tools and platforms that allow individuals or teams regardless of their physical locations.
What is Micro Segmentation in Network Security?
Micro segmentation is a network security strategy that divides a computer network into small, isolated segments to enhance security by minimizing lateral movement of threats.
What Is Data Loss Prevention for Businesses?
Data loss prevention (DLP) includes strategies, tools, and processes aimed to prevent unauthorized access, use, disclosure, or transmission of sensitive information within an organization.
What Is Network Access Control?
Network Access Control (NAC) is a cybersecurity measure designed to govern and oversee entry to a computer network. Its goal is to allow only authorized and compliant devices to connect – mitigating the risk of potential security vulnerabilities.
What Is Business Network Patch Management?
Business Network Patch Management is a systematic approach for software applications and operating systems within a business network that involves planning, testing, and executing updates or patches.
What Is Network Threat Detection Response?
Threat Detection and Response (TDR) is a cybersecurity approach that involves continuous monitoring to identify and counter potential security threats within an organization’s network.
What Is a Circuit-Level Gateway?
A circuit-level gateway is a type of firewall or network security device that operates at the session layer (Layer 5) of the OSI model. It works by monitoring and controlling network traffic based on the transmission control protocol (TCP) handshaking process without inspecting the actual contents of the data packets.
What Is an Application-Level Gateway (ALG)?
An Application-Level Gateway (ALG) functions as a security component within a firewall or router, operating at the application layer of the OSI model.
What Is a Packet Filtering Firewall?
A packet filtering firewall is the most fundamental network security measure, regulating data movement within a network. It operates by overseeing the flow of network packets based on user-defined rules, assessing factors like IP addresses, ports, and protocols to control their transmission across networks.
What Is a Static IP?
What is Network Encryption?
What Is a Stateful Firewall?
What is DNS Fast Flux?
What is Account Takeover?
What is Cloud Infrastructure?
What is Enterprise Hybrid Cloud?
What is Hybrid Cloud Security?
What is a Cloud Firewall?
What Is a Virtual Private Cloud (VPC)?
What is an Intrusion Detection System (IDS)?
What is a Personal Firewall?
What is Packet Filter?
What is OpenShift?
What is DNS Security?
What is IoT Security?
What is Email Security?
What is a Firewall?
What is Network Segmentation?
Everything You Need to Know About Web Protection
What is URL Filtering?
What is a Network Gateway?
What is Web Filtering?
Malware Protection
What Is An Identity Provider (IdP)?
What is Identity and Access Management (IAM)?
What is Lateral Movement?
What is Multi-Factor Authentication (MFA)?
What is ZTNA?
What Is Encryption?
What Is SAML?
What is an Endpoint?
OSI Model – French
Access Control Models Explained in Detail: PAM, MAC, DAC & RBAC
ZTNA vs VPN
VPN Entreprise
Authentication vs. Authorization
IPsec Tunnel Mode vs. Transport Mode
VPN Passthrough
DDoS
Data Breach
SCIM
VPN Split Tunneling
HITRUST
GDPR
SIEM
Phishing
Ransomware
2FA
SSL
IPSEC
What is Zero Trust?
DevSecOps
Virtual Desktop Infrastructure
Always On VPN
IT Infrastructure Security
Wireguard VPN
Firewall as a Service
What Is Cybersecurity?
Cloud Network Security
Software Defined Networking
What is SASE?
(Secure Access Service Edge)
SASE is a network security framework that addresses the reality of modern work where employees access applications and data from anywhere, not just traditional office networks. The corporate network is now the internet itself, and SASE is built for the new reality with a unified approach to network security and connectivity.
1 min watch