Data protection
Keeping sensitive data encrypted, classified, and backed up properly.
15 terms
Protecting data at rest, in transit, and in backup — and knowing how much of it you actually need to be holding.
Showing 15 of 15
3-2-1 backup
Three copies of data, on two media types, with one copy off-site.
Data classification
Labeling data by sensitivity so the right controls apply automatically.
Data loss prevention (DLP)
Tools that detect and block sensitive data from leaving improperly.
Data minimization
Collecting and keeping only the data actually needed for the task.
Data retention
How long an organization keeps data before deleting it.
Digital certificate
An electronic credential proving a website or signer is who they claim.
Encryption at rest and in transit
Encrypting data both while stored and while moving across a network.
End-to-end encryption (E2EE)
Only the sender and recipient can read it, not the service in between.
Hashing
A one-way fingerprint of data, used to verify integrity or store passwords.
Immutable backup
A backup that can't be altered or deleted, even by an administrator.
Personally identifiable information (PII)
Data that can identify a specific individual on its own or combined.
Protected health information (PHI)
Individually identifiable health information covered under HIPAA.
Public key infrastructure (PKI)
The system of certificates and keys that proves identity without a shared secret.
Salting
Adding random data before hashing so identical passwords don't match.
Tokenization
Replacing a sensitive value with a placeholder that's useless if stolen.
No terms match your search.