Advanced persistent threat (APT)
Application security (AS)
capabilities
definition
goal and objectives
threat vectors
Asset management and supply chain (AMSC)
Audit
artifacts
assessment
controls, technologies, and manual processes
functional areas
risk mitigations
security capabilities
Audit First Methodology
audit controls
design controls
detective controls
forensic controls
preventive controls
threat analysis
deficiency
definition
remediation
tracking process
evidence collection
planning process
proving negatives
records generation
reporting and records retention
results
threat audit
threat-based objectives
validation