Qevlar AI | SOC & Cybersecurity Glossary

The SOC & Cybersecurity Glossary

From alert fatigue to zero-day, every term your security team needs. Clearly defined, in one place.

Search by category

Detection

[Alert

A notification triggered by a security tool when a potentially suspicious or malicious event is detected.

Read the full definition

[Alert Fatigue

The desensitization SOC analysts experience when overwhelmed by excessive alert volumes.

Read the full definition

Threats

[APT (Advanced Persistent Threat)

A sophisticated, long-term cyberattack carried out by a well-resourced threat actor.

Read the full definition

[Attack Surface

The total set of entry points through which an attacker could attempt to gain unauthorized access to a system or environment.

Read the full definition

[C2 (Command and Control)

The infrastructure and communication channels used by attackers to control compromised systems.

Read the full definition

[Campaign

A coordinated series of related attacks carried out by the same threat actor targeting multiple victims using the same infrastructure or methods.

Read the full definition

Roles

[CERT (Computer Emergency Response Team)

A team responsible for receiving, reviewing, and responding to cybersecurity incident reports.

Read the full definition

[CISO (Chief Information Security Officer)

The senior executive responsible for an organization's overall information security strategy and program.

Read the full definition

Metrics

[Conclusiveness Rate

The percentage of investigations that reach a clear, confident verdict rather than an inconclusive result.

Read the full definition

List of Terms

  1. Behavioral Analytics
    The use of data analysis to identify patterns of activity that deviate from established baselines and may indicate malicious behavior.
    Read the full definition

  2. Malware
    Malicious software designed to disrupt, damage, or gain unauthorized access to systems.
    Read the full definition

  3. Ransomware
    A type of malware that encrypts a victim's files or systems and demands payment in exchange for the decryption key.
    Read the full definition

  4. Phishing
    A social engineering attack in which an attacker impersonates a trusted entity to trick users into revealing credentials or executing malicious actions.
    Read the full definition

  5. Zero-Day
    A software vulnerability that is unknown to the vendor and has no available patch at the time it is discovered or exploited.
    Read the full definition