Architecture as Code: The practice of managing and versioning enterprise architecture specifications in plain text files using standard Git workflows.
Business Capability: A fundamental capability that an enterprise possesses to deliver business value, distinct from specific software implementations.
CIA Triad: Confidentiality, Integrity, and Availability—the three core pillars of information security classification.
DSL (Domain-Specific Language): A programming or markup language tailored specifically to an application domain (.ea files in Scapius).
STRIDE: Threat modeling taxonomy classifying threats into Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege.
TIME Framework: Portfolio rationalization methodology categorizing software assets into Tolerate, Invest, Migrate, or Eliminate.
Trust Boundary: A physical or logical perimeter across which data or execution transitions to a different security trust level.
Value Stream: An end-to-end customer-oriented sequence of stages delivering measurable value.