The lexicon.
Every term defined plainly — and then the thing no dictionary gives you: the GTM implication. Defined here once; referenced everywhere across the Atlas.
A
- ASM / EASM Acronym
Attack Surface Management. Continuously discovers and inventories an organization's external-facing attack surface — domains, hosts, exposed services, shadow IT.
- Attack Path GTM
The chained sequence of conditions an attacker would exploit to reach a goal — vs. a list of independent vulnerabilities or misconfigurations.
- Augmentation GTM
A displacement pattern: "keep your stack, add us where it's blind." Sells a precise gap, not a replacement.
B
C
- CIEM Acronym
Cloud Infrastructure Entitlement Management. Discovers and rightsizes the cloud-permissions surface — who/what has what access in AWS/Azure/GCP.
- CNAPP Acronym
Cloud-Native Application Protection Platform. Consolidates cloud security across posture (CSPM), workload (CWPP), entitlements (CIEM), and runtime.
- Consolidation GTM
A displacement pattern: "we collapse several tools you already pay for into one." Trades tool sprawl + budget pressure for a single vendor relationship.
- CSPM Acronym
Cloud Security Posture Management. Finds and flags misconfigurations and policy violations across cloud infrastructure (AWS, Azure, GCP).
- CTEM Acronym
Continuous Threat Exposure Management. Gartner-coined umbrella for ongoing identification, prioritization, and validation of attack-paths and exploitable exposure.
- CWPP Acronym
Cloud Workload Protection Platform. Runtime protection for cloud workloads — VMs, containers, serverless — with detection, response, and exploit-prevention.
D
- Displacement GTM
The competitive pattern by which a new vendor takes budget or surface area from an incumbent. Not the same as "competing" — displacement names which incumbent is losing what.
- DLP Acronym
Data Loss Prevention. Inspects content and context across endpoints, networks, and cloud to block sensitive data from leaving the perimeter.
- DSPM Acronym
Data Security Posture Management. Discovers where sensitive data lives across cloud and SaaS, classifies it, and flags where it's exposed.
E
- EDR Acronym
Endpoint Detection & Response. Records endpoint behavior, detects threats, and enables response actions on workstations and servers.
- Exposure GTM
The set of conditions in an environment that a threat could exploit — vulnerabilities, misconfigurations, over-permissioned identities, exposed data, weak controls.
G
I
- IAM Acronym
Identity & Access Management. Authenticates users, authorizes access, manages the lifecycle of identities (human and machine) across systems.
- ITDR Acronym
Identity Threat Detection & Response. Detects identity-based attacks — credential theft, MFA fatigue, lateral movement using legitimate credentials.
M
O
P
- PAM Acronym
Privileged Access Management. Vaults, rotates, and gates access to privileged credentials and sessions — the keys to the kingdom.
- Platformization GTM
The structural movement of cybersecurity from best-of-breed point products toward integrated platforms — Palo Alto, Crowdstrike, Microsoft, Wiz, Cisco.
S
- SIEM Acronym
Security Information & Event Management. Aggregates security logs from across the environment for correlation, alerting, and investigation.
- SOAR Acronym
Security Orchestration, Automation & Response. Workflow automation for incident response — connects tools into runbooks that triage and act.
T
W
X
That term isn't in the Atlas yet.
Try removing the family filter, shortening the query, or browsing A–Z.