Glossary
Quick definitions for the terms that come up most on this site. Looking for something not listed here? See the full A-Z cybersecurity glossary.
Conditional Access
Microsoft Entra's policy engine for controlling access based on signals like user, device, location and risk — not just a password check.
Read definition →Multi-Factor Authentication (MFA)
Requires two or more independent factors to verify identity — typically a password plus something you have or something you are — instead of a password alone.
Read definition →Privileged Identity Management (PIM)
A Microsoft Entra service that grants elevated admin access just-in-time and for a limited window, instead of leaving privileged roles active permanently.
Read definition →Role-Based Access Control (RBAC)
Grants permissions based on a user's role within the organisation, rather than assigning access to each person individually.
Read definition →Single Sign-On (SSO)
One set of credentials gives a user access to multiple applications, without signing in separately to each one.
Read definition →Zero Trust
A security model built on 'never trust, always verify' — no user or device is trusted by default, even inside the corporate network.
Read definition →