Acronyms used in the CISM Exam 

 

The CISM candidate should be familiar with the following list of acronyms. These acronyms are the only stand-alone abbreviations used in exam questions.

Acronyms

ASCII
Bit
CASE
CCTV
CPU
DBA
DBMS
EDI
FTP
HTTP
HTTPS
ID
IDS
IP
IS
ISO
IT
LAN
PBX
PC
PCR
PDA
PERT
PIN
PKI
RAID
RFID
SDLC
SSL
TCP
UPS
VoIP
WAN

American Standard Code for Information Interchange
Binary digit
Computer-aided system engineering
Closed-circuit television
Central processing unit
Database administrator
Database management system
Electronic data interchange
File Transfer Protocol
Hypertext Transmission Protocol
Secured Hypertext Transmission Protocol
Identification
Intrusion detection system
Internet protocol
Information systems
International Organization for Standardization
Information technology
Local area network
Private branch (business) exchange
Personal computer/microcomputer
Program change request
Personal digital assistant
Program Evaluation Review Technique
Personal identification number
Public key infrastructure
Redundant Array of Inexpensive Disks
Radio frequency identification
System development life cycle
Secure Sockets Layer
Transmission Control Protocol
Uninterruptible power supply
Voice-over Internet Protocol
Wide area network

In addition to the aforementioned acronyms, candidates may also wish to become familiar with the following additional acronyms. Should any of these abbreviations be used in exam questions, their meanings would be included when the acronym appears.

Additional Acronyms

4GL
ACID
ACL
AES
AH
AI
AICPA
ALE
ALU
ANSI
API
ARP
ASIC
ATDM
ATM
B-to-B
B-to-C
B-to-E
B-to-G
BCI
BCM
BCP
BI
BIA
BIMS
BIOS
BIS
BLP
BNS
BOM
BOMP
BPR
BRP
BSC
CA
CAAT
CAD
CAE
CAM
CASE
CCK
CCM
CD
CD-R
CD-RW
CDDF
CDPD
CEO
CERT
CGI
CIAC
CICA
CIM
CIO
CIS
CISO
CMDB
CMM
CMMI
CNC
COBIT
COCOMO2
CODASYL
COM
COM/DCOM
COOP
CORBA
CoS
COSO
CPM
CPO
CPS
CRC
CRL
CRM
CSA
CSF
CSIRT
CSMA/CD
CSO
CSU-DSU
DAC
DASD
DAT
DCE
DCE
DCOM
DCT
DD/DS
DDL
DDN
DDoS
DECT
DES
DFD
DHCP
DID
DIP
DLL
DMS
DMZ
DNS
DoS
DOSD
DRII
DRP
DSL
DSS
DSSS
DTE
DTR
DVD
DVD-HD
DW
EA
EAC
EAI
EAM
EAP
EBCDIC
EC
ECC
EDFA
EER
EFT
EIGRP
EJB
EMI
EMRT
ERD
ERP
ESP
EVA
FAR
FAT
FC
FDDI
FDM
FEA
FEMA
FER
FERC
FFIEC
FFT
FHSS
FIPS
FP
FPA
FRAD
FRB
FRR
GAS
GB
GID
GIS
GPS
GSM
GUI
HA
HD-DVD
HDLC
HIPAA
HIPO
HTML
HW/SW
I/O
I&A
ICMP
ICT
IDE
IDEF1X
IETF
IPF
IPL
IPMA
IPRs
IPS
IPSec
IPX
IR
IR
IRC
IrDA
IRM
IS/ORP
ISAKMP/Oakley
ISAM
ISDN
ISP
ITF
ITGI
ITIL
ITSM
ITT
ITU
JIT
Kb
KB
KB
KDSI
KGI
KLOC
KPI
L2TP
LCP
M&A
MAC
MAC address
MAN
MAP
MIS
MODEM
MOS
MPLS
MRP
MSAUs
MTBF
MTS
MTTR
NAP
NAS
NAT
NCP
NDA
NFPA
NFS
NIC
NIST
NNTP
NSP
NT
NTFS
NTP
OBS
OCSP
OECD
OEP
OFDM
OLAP
OO
OOSD
ORB
OS
OSI
OSPF
PAD
PAN
PBX
PDCA
PDN
PER
PHY
PICS
PID
PID
PMBOK
PMI
POC
POP
POS
POTS
PPP
PPPoE
PPTP
PR
PRD
PRINCE2
PROM
PSTN
PVC
QA
QAT
RA
RAD
RADIUS
RAID
RAM
RAS
RBAC
RDBMS
RF
RFI
RFP
RIP
RMI
ROI
ROLAP
ROM
RPC
RPO
RST
RTO
RW
S/HTTP
S/MIME
SA
SAN
SANS
SAS
SBC
SCADA
SCARF
SCARF/EAM
SCM
SCOR
SD/MMC
SDLC
SDO
SEC
SET
SLA
SLIP
SLM
SLOC
SMART
SME
SMF
SMTP
SNA
SNMP
SO
SOA
SOAP
SOHO
SPI
SPICE
SPOC
SPOOL
SQL
SSH
SSID
SSO
SVC
SYSGEN
TACACS
TCO
TCP/IP
TCP/UDP
TDM
TELNET
TES
TFTP
TKIP
TLS
TMS
TP monitors
TQM
TR
UAT
UBE
UDDI
UDP
UID
UML
URI
URL
URN
USB
VLAN
VoIP
VPN
WAP
WBS
WEP
WLAN
WML
WORM
WP
WPA
WPAN
WSDL
WWAN
WWW
X-to-X
XBRL
XML
Xquery
XSL

Fourth-generation language
Atomicity, consistency, isolation and durability
Access control list
Advanced Encryption Standard
Authentication header
Artificial intelligence
American Institute of Certified Public Accountants
Annual loss expectancy
Arithmetic-logic unit
American National Standards Institute
Application programming interface
Address Resolution Protocol
Application-specific integrated circuit
Asynchronous time division multiplexing
Asynchronous Transfer Mode or automated teller machine
Business-to-business
Business-to-consumer
Business-to-employee
Business-to-government
Business Continuity Institute
Business continuity management
Business continuity planning
Business intelligence
Business impact analysis
Biometric Information Management and Security
Basic Input/Output System
Bank for International Settlements
Bypass label process
Backbone network services
Bill of materials
Bill of materials processor
Business process reengineering
Business recovery (or resumption) plan
Balanced scorecard
Certificate authority
Computer-assisted audit technique
Computer-assisted design
Computer-assisted engineering
Computer-aided manufacturing
Computer-aided software engineering
Complimentary Code Keying
Constructive Cost Model
Compact disk
Compact disk-recordable
Compact disk-rewritable
Call Data Distribution Function
Cellular Digital Packet Data
Chief executive officer
Computer emergency response team
Common gateway interface
Computer Incident Advisory Capability
Canadian Institute of Chartered Accountants
Computer-integrated manufacturing
Chief information officer
Continuous and intermittent simulation
Chief information security officer
Configuration management database
Capability Maturity Model
Capability Maturity Model Integration
Computerized Numeric Control
Control Objectives for Information and related Technology
Constructive Cost Model
Conference on Data Systems Language
Component Object Model
Component Object Model/Distributed Component Object Model
Continuity of operations plan
Common Object Request Broker Architecture
Class-of-service
Committee of Sponsoring Organizations of the Treadway Commission
Critical Path Methodology
Chief privacy officer
Certification practice statement
Cyclic redundancy check
Certificate revocation list
Customer relationship management
Control self-assessment
Critical success factor
Computer security incident response team
Carrier-sense Multiple Access/Collision Detection
Chief security officer
Channel service unit/digital service unit
Discretionary access controls
Direct access storage device
Digital audio tape
Data communications equipment
Distributed computing environment
Distributed Component Object Model (Microsoft)
Discrete Cosine Transform
Data dictionary/directory system
Data Definition Language
Digital Divide Network
Distributed denial of service
Digital Enhanced Cordless Telecommunications
Data Encryption Standard
Data flow diagram
Dynamic Host Configuration Protocol
Direct inward dial
Document image processing
Dynamic link library
Disk management system
Demilitarized zone
Domain name server
Denial of service
Data-oriented system development
Disaster Recovery Institute International
Disaster recovery planning
Digital subscriber lines
Decision support systems
Direct-sequence spread spectrum (DSSS)
Data terminal equipment
Data terminal ready
Digital video disc
Digital video disc-high definition/high density
Data warehouse
Enterprise architecture
Estimates at completion
Enterprise application integration
Embedded audit module
Extensible Authentication Protocol
Extended Binary-coded for Decimal Interchange Code
Electronic commerce
Elliptical curve cryptography
Enterprise data flow architecture
Equal-error rate
Electronic funds transfer
Enhanced Interior Gateway Routing Protocol
Enterprise java beans
Electromagnetic interference
Emergency response time
Entity relationship diagram
Enterprise resource planning
Encapsulating security payload
Earned value analysis
False-acceptance rate
File allocation table
Fibre channels
Fiber-Distributed Data Interface
Frequency division multiplexing
Federal enterprise architecture
Federal Emergency Management Association (USA)
Failure-to-enroll rate
Federal Energy Regulatory Commission (USA)
Federal Financial Institutions Examination Council (USA)
Fast Fourier Transform
Frequency-hopping spread spectrum
Federal Information Processing Standards
Function point
Function point analysis
Frame relay assembler/disassembler
Federal Reserve Board (USA)
False-rejection rate
Generalized audit software
Gigabyte
Group ID
Geographic information systems
Global position system
Global system for mobile communications
Graphical user interface
High availability
High definition/high density-digital video disc
High-level data link control
Health Insurance Portability and Accountability Act (USA)
Hierarchy input-process-output
Hypertext Markup Language
Hardware/software
Input/output
Identification and authentication
Internet Control Message Protocol
Information and communication technologies
Integrated development environment
Integration Definition for Information Modeling
Internet Engineering Task Force
Information processing facility
Initial program load
International Project Management Association
Intellectual property rights
Intrusion prevention system
IP Security
Internetwork Packet Exchange
Incident response
Infrared
Internet relay chat
Infrared Data Association
Incident response management
IS disaster recovery planning
Internet Security Association and Key Management Protocol/Oakley
Indexed Sequential Access Method
Integrated services digital network
Internet service provider
Integrated test facility
IT Governance Institute
Information Technology Infrastructure Library
IT service management
Invitation to tender
International Telecommunications Union
Just in time
Kilobit
Kilobyte
Knowledge base
Thousand delivered source instructions
Key goal indicator
Kilo lines of code
Key performance indicator
Layer 2 Tunneling Protocol
Link Control Protocol
Mergers and acquisition
Mandatory Access Control
Media Access Control address
Metropolitan area network
Manufacturing accounting and production
Management information system
Modulator/demodulator
Maintenance out of service
Multiprotocol label switching
Manufacturing resources planning
Multistation access units
Mean time between failures
Microsoft’s Transaction Server
Mean time to repair
Network access point
Network access server or Network attached storage
Network address translation
Network Control Protocol
Nondisclosure agreement
National Fire Protection Agency (USA)
Network file system
Network interface card
National Institute of Standards and Technology (USA)
Network News Transfer Protocol
Name Server Protocol or Network service provider
New technology
NT file system
Network Time Protocol
Object Breakdown Structure
Online Certificate Status Protocol
Organization for Economic Cooperation and Development
Occupant emergency plan
Orthogonal frequency division multiplexing
Online analytical processing
Object-oriented
Object-oriented system development
Object request broker (ORB)
Operating system
Open Systems Interconnection
Open Shortest Path First
Packet assembler/disassembler
Personal area network
Private branch exchange
Plan-Do-Check-Act
Public data network
Package-enabled reengineering
Physical layer
Platform for Internet content selection
Process ID
Project Initiation Document
Project Management Body of Knowledge
Project Management Institute
Proof of concept
Proof of possession
Point of sale or Point-of-sale systems
Plain old telephone service
Point-to-point Protocol
Point-to-point Protocol Over Ethernet
Point-to-Point Tunneling Protocol
Public relations
Project request document
Projects in Controlled Environments 2
Programmable Read-Only Memory
Public switched telephone network
Permanent virtual circuit
Quality assurance
Quality assurance testing
Registration authority
Rapid application development
Remote Access Dial-in User Service
Redundant Array of Inexpensive Disks
Random access memory
Remote access service
Role-based access control
Relational database management system
Radio frequency
Request for information
Request for proposal
Routing Information Protocol
Remote method invocation
Return on investment
Relational online analytical processing
Read-only memory
Remote procedure call
Recovery point objective
Reset
Recovery time objective
Rewritable
Secure Hypertext Transfer Protocol
Secure Multipurpose Internet Mail Extensions
Security Association
Storage area network
The SANS Institute
Statement on Auditing Standards
Session border controller
Supervisory Control and Data Acquisition
Systems Control Audit Review File
Systems Control Audit Review File and Embedded Audit Modules
Supply Chain Management
Supply Chain Operations Reference
Secure digital multimedia card
System development life cycle
Service delivery objective
Securities and Exchange Commission (USA)
Secure electronic transactions
Service level agreement
Serial Line Internet Protocol
Service level management
Source lines of code
Specific, measurable, achievable, relevant, time-bound
Subject matter expert
System management facility
Simple Mail Transport Protocol
Systems network architecture
Simple Network Management Protocol
Security officer
Service-oriented architecture
Simple Object Access Protocol
Small office-home office
Security parameter index
Software Process Improvement and Capability Determination
Single point of contact
Simultaneous peripheral operations online
Structured Query Language
Secure Shell
Set services identifiers
Single sign-on
Switched virtual circuits
System generation
Terminal Access Control Access Control System
Total cost of ownership
Transmission Control Protocol/Internet Protocol
Transmission Control Protocol/User Datagram Protocol
Time-division multiplexing
Teletype network
Terminal emulation software
Trivial File Transport Protocol
Temporal Key Integrity Protocol
Transport layer security
Tape management system
Transaction processing (TP) monitors
Total quality management
Technical report
User acceptance testing
Unsolicited bulk e-mail
Description, discovery and integration
User Datagram Protocol
User ID
Unified Modeling Language
Uniform resource identifier
Universal resource locator
Uniform resource name
Universal Serial Bus
Virtual local area network
Voice-Over IP
Virtual private network
Wireless Application Protocol
Work breakdown structure
Wired Equivalent Privacy
Wireless local area network
Wireless Markup Language
Write-once and read many
Work packages
Wi-Fi Protected Access
Wireless personal area network
Web Services Description Language
Wireless wide area network
World Wide Web
Exchange-to-Exchange
Extensible Business Reporting Language
Extensible Markup Language
XML query
Extensible Stylesheet Language