Cyber & AI Governance Dictionary
Plain-language definitions of the security and AI-governance terms small firms run into — browsable by domain, including a full ISO/IEC 42001 section for the standard that's quickly becoming the reference point for responsible AI use.
Browse by domain
Jump straight to a domain
ISO/IEC 42001 / AIMS
The certifiable standard for governing how an organization builds or uses AI.
The international standard for AI management systems.
72 terms AISAI security
Attacks against AI systems, and the controls that defend them.
15 terms FWKFrameworks & steps
The named steps inside NIST's major frameworks, explained one at a time.
19 terms GRCGovernance, risk & compliance
The policies, audits, and regulations that prove security is actually managed.
22 terms ATKThreats & attacks
The attacks and attacker techniques a small firm is actually likely to face.
19 terms IAMIdentity & access
Proving who someone is and controlling exactly what they can touch.
13 terms DATAData protection
Keeping sensitive data encrypted, classified, and backed up properly.
15 terms IRDetection & response
Catching an incident early, and what to do in the first hours after.
15 terms NETNetwork & infrastructure
The systems that filter, segment, and secure traffic in and out.
12 terms CLDCloud
What you secure yourself in the cloud, versus what the provider secures.
7 terms CORESecurity fundamentals
The foundational concepts every other term on this page builds on.
16 termsSources & disclaimer
- Definitions on this page are original, plain-language explanations.
- The ISO standards themselves are available for purchase from iso.org.
- This page is general information, not legal or certification advice. Confirm current requirements with a qualified advisor or the certification body before relying on anything here.