Skip to main content
Cloud & AI Hub
Browse
Glossary AI Directory Playgrounds Models Prompts Explainers Strategy Matrix Benchmark Decoder

Security

Identity, encryption, and access control in the cloud.

94 terms

This is the largest category on the site, and deliberately so — security spans several genuinely different disciplines that get lumped under one label: identity and access (IAM, OAuth, SSO, RBAC vs. ABAC), cryptography (TLS, symmetric/asymmetric encryption, envelope encryption, key rotation), and application security (XSS, CSRF, SQL injection, WAFs). Confusing these is how you end up hardening the wrong layer — encrypting data at rest while an IAM policy leaves it publicly readable, for instance.

Every entry follows the same practitioner template: what the mechanism actually does, when it's the right control for the threat you're facing, and — critically — what people get wrong, because security failures are disproportionately implementation mistakes (a misconfigured bucket policy, a JWT verified without checking its signature algorithm) rather than cryptographic breaks.