The Kaliteq glossary

Cybersecurity, AI, governance, software development, GDPR, product, ESG: the key terms and acronyms behind Kaliteq's diagnostics, explained simply.

All terms

Categories

Alphabetical index

60 terms

C

Capability Maturity Model Integration

CMMI

CMMI is a maturity model that describes five progression levels (initial, defined, managed, quantitatively managed, optimizing) to assess how well an organization's processes are under control, originally for software development and later extended to other domains.

Governance

Capitalization Table

Cap Table

The cap table lists all of a company's shareholders and their share of the capital, including dilutive instruments (stock options, convertible notes), at a given point in time.

Technology Due Diligence

Carbon Footprint Assessment

A carbon footprint assessment measures all greenhouse gas emissions generated directly and indirectly by an organization's activity, typically broken down into three scopes (1, 2 and 3).

ESG

Chief Information Security Officer

CISO

The CISO drives the organization's cybersecurity strategy: defining the security policy, coordinating risk and incident management, and reporting the company's exposure to leadership.

Cybersecurity

CIS Controls

The CIS Controls are a prioritized list of concrete security measures, published by the Center for Internet Security, designed to be implemented progressively starting with the highest-impact controls.

Cybersecurity

COBIT

COBIT

COBIT (Control Objectives for Information and Related Technologies) is an IT governance framework that connects business goals to IT goals and provides management and control practices for each domain.

Governance

Common Vulnerabilities and Exposures

CVE

A CVE is a unique public identifier assigned to a known software vulnerability, letting every security actor refer unambiguously to the same flaw.

Cybersecurity

Common Vulnerability Scoring System

CVSS

CVSS is a standardized 0-to-10 scale that scores a vulnerability's severity using objective criteria (ease of exploitation, impact on confidentiality, integrity and availability).

Cybersecurity

Consent

Under GDPR, consent is a freely given, specific, informed and unambiguous indication by which a person agrees to the processing of their data, and it must be as easy to withdraw as it was to give.

GDPR

Continuous Integration and Continuous Delivery

CI/CD

CI/CD refers to the automation of build, test and deployment steps, enabling changes to be shipped to production frequently and reliably.

Software development

Corporate Sustainability Reporting Directive

CSRD

The CSRD is an EU directive that significantly widens the number of companies required to publish a detailed sustainability report, following standardized disclosure rules (ESRS), covering environmental, social and governance topics.

ESG

D

Data Processor

Under GDPR, a data processor is any organization that processes personal data on behalf of a data controller, following its instructions, under a contract that precisely governs this relationship.

GDPR

Data Protection Impact Assessment

DPIA

A DPIA is a formal assessment, required for data processing likely to result in a high risk to individuals, evaluating necessity, proportionality and the measures needed to reduce that risk.

GDPR

Data Protection Officer

DPO

The DPO is the person responsible for ensuring GDPR compliance within the organization: advising, monitoring, training teams and acting as the point of contact with the data protection authority.

GDPR

Data Room

A Data Room is a secure space, usually digital, where the documents needed for a due diligence, fundraising round or audit are centralized, with fine-grained access control and consultation tracking.

Technology Due Diligence

Design Sprint

A Design Sprint is an intensive work format, usually run over four to five days, that takes a team from problem definition to a prototype tested with real users.

Innovation

Design Thinking

Design Thinking is a user-centered problem-solving method structured around empathy, problem definition, ideation, prototyping and testing.

Product

DevOps

DevOps refers to a set of cultural and technical practices that bring development and operations teams closer together to deliver software faster and more reliably.

Software development

DORA Metrics

DORA

DORA metrics (from the DevOps Research and Assessment program) measure a software team's performance across four indicators: deployment frequency, lead time for changes, change failure rate and time to restore service.

Software development

Ready to launch your first assessment?

Choose your framework, define your scope, and get started in minutes.

Try free for 7 days