process

Auth

Authentication vs Authorisation: Confirming users are who they say they are and assigning what users can do and access

MAC/DAC/RBAC

For authentication and authorisation, logical access control can be mandatory, discretionary or role-based

MFA

Authentication via multiple method types of knowledge, possession (token) and inherence (biometric) where needed

Process

Process are repeatable tasks to achieve something modellable as flow diagrams

Metrics

Assigning numbers to test processes including information or motivation; value vs cost; execution, reporting and setup; dysfunction and construct validity

Assurance vs Control

Proactive vs reactive approaches to putting good things in and taking bad things out of testing processes to assure and control testing quality