Skip to content
Knowledge Base

Glossary

Plain-English definitions for the terminology used across Agilewing.

001
BYOK
BYOK lets a customer generate and manage their own encryption keys instead of relying on the cloud provider’s key system.
002
CCPA
CCPA is a California law that gives consumers the right to know what personal information is collected and to request its deletion.
003
CDN
A CDN is a network of servers that caches copies of content near users, speeding up load times and reducing latency.
004
China MLPS 2.0
China MLPS 2.0 is a Chinese cybersecurity law that requires companies to implement multiple layers of protection for information systems.
005
Cloud Migration
Cloud migration is the process of moving applications, data, and workloads from on‑premises servers to cloud infrastructure.
006
Cloud‑native Architecture
Cloud‑native architecture designs applications specifically for cloud environments, using containers, microservices, and automated scaling.
007
Cross-border Data Transfer
Cross‑border data transfer is the movement of data across national borders, which often triggers compliance checks with local privacy laws.
008
Data Sovereignty
Data sovereignty means that data is subject to the laws and regulations of the country where it is stored or processed.
009
DDoS Mitigation
DDoS mitigation is the set of techniques used to detect and block malicious traffic floods that try to overwhelm a service.
010
DLP
DLP refers to tools that monitor and prevent sensitive data from leaving a company’s network without permission.
011
Edge Computing
Edge computing processes data close to where it is generated, such as on a user’s device, rather than sending it all to a central cloud.
012
GDPR
GDPR is an EU law that gives individuals rights over their personal data and imposes strict rules on how organizations handle that data.
013
IAM
IAM systems control who can access which resources, by verifying identities and assigning permissions based on roles.
014
Lift‑and‑Shift
Lift‑and‑shift is a quick migration method where you move an application to the cloud without redesigning its architecture.
015
MFA
MFA requires users to provide two or more verification factors—like a password and a phone code—to log in.
016
MSS
MSS is a service where a security provider continuously watches a company’s systems, detects threats, and responds to incidents.
017
Multi‑cloud Management
Multi‑cloud management is the practice of overseeing workloads across more than one cloud provider to avoid lock‑in and improve resilience.
018
PCI-DSS
PCI‑DSS is a set of security standards that any business handling credit card information must follow to protect cardholder data.
019
PDPA
PDPA is a data protection law in several Asian countries that regulates how personal information is collected, used, and shared.
020
Re‑platforming
Re‑platforming involves making minor adjustments to an application so it can run more efficiently on the cloud without a full rewrite.
021
RTO
RTO is the maximum acceptable time a system can be down after a failure before it starts impacting the business.
022
SIEM
SIEM software aggregates logs from many sources, correlates events, and alerts analysts when suspicious activity occurs.
023
SLA
An SLA is a contract that spells out the expected level of service—uptime, response time, and remedies—if those levels are not met.
024
WAF
A WAF is a filter that sits in front of a web application, blocking malicious traffic such as SQL injection and cross‑site scripting.
025
Zero Trust
Zero Trust is a security model that requires every user and device to be verified before accessing any resource, even inside the network.