Actual deployment and infrastructure arrangement.

Model where nodes communicate without a central server.

Architecture processing data through sequential stages.

Messaging model where publishers send events to subscribers.

Pattern providing an intermediary for another object.

Pattern creating objects by cloning existing instances.

Shared language used for system integration.

Architecture allowing functionality to be added through plugins.

Optional software module extending an application.

Collection of related software modules or resources.

Authentication without a traditional password.

Original readable data before encryption.

Cryptographic key commonly used for encryption or verification.

Secret cryptographic key used for decryption or signing.

Attack accessing files outside an intended directory.

Authorized testing for exploitable weaknesses.

Obtaining higher permissions than authorized.

Access controlled through explicit policies.

Authorization to perform an action.

Component evaluating security or business policies.

Component deciding whether an action is allowed.

Component enforcing policy decisions.

Main action or component delivered by malicious software.

Replacing identifiers with pseudonyms.

Control designed to prevent undesirable events.

Percentage of execution paths tested.

Testing general properties across generated inputs.

Testing system behavior under performance conditions.

Testing protection of personal or sensitive data.

Testing valid expected inputs.

Testing combinations of input values in pairs.

Importance assigned to fixing a defect.

Update that fixes or improves software.

Minor release within a software version series.

Release mainly containing bug or security fixes.

Tool transforming source code before compilation.

Component analyzing token structure.