CompTIA IT Acronyms & Glossary

CompTIA loves acronyms. This glossary collects the ones you are most likely to meet on the A+, Network+, and Security+ exams, each with a plain-English definition. For exam-specific lists see the Network+ acronyms page.

Current exam references: A+ 220-1101 / 220-1102, Network+ N10-009, and Security+ SY0-701.

Test your recall with free CompTIA practice questions
ACL
Access Control List — rules that permit or deny network/file access.
AES
Advanced Encryption Standard — symmetric block cipher (128/192/256-bit).
AP
Access Point — device that connects wireless clients to a wired network.
APIPA
Automatic Private IP Addressing — 169.254.x.x address when DHCP fails.
ARP
Address Resolution Protocol — maps IP addresses to MAC addresses.
BIOS
Basic Input/Output System — firmware that starts hardware at boot.
BYOD
Bring Your Own Device — policy allowing personal devices at work.
CIA
Confidentiality, Integrity, Availability — the core security triad.
CIDR
Classless Inter-Domain Routing — flexible subnet prefix notation (e.g. /24).
DHCP
Dynamic Host Configuration Protocol — auto-assigns IP configuration.
DLP
Data Loss Prevention — controls that stop sensitive data exfiltration.
DNS
Domain Name System — resolves hostnames to IP addresses (port 53).
DoS
Denial of Service — attack that overwhelms a resource to make it unavailable.
EFS
Encrypting File System — file-level encryption in Windows NTFS.
FTP
File Transfer Protocol — transfers files (ports 20/21).
GPO
Group Policy Object — Windows configuration applied to users/computers.
HTTPS
Hypertext Transfer Protocol Secure — encrypted web traffic (port 443).
IDS
Intrusion Detection System — monitors and alerts on suspicious activity.
IPS
Intrusion Prevention System — detects and actively blocks threats.
LDAP
Lightweight Directory Access Protocol — directory queries (port 389).
MAC
Media Access Control — unique 48-bit hardware address on a NIC.
MFA
Multi-Factor Authentication — two or more independent authentication factors.
NAT
Network Address Translation — maps private IPs to a public IP.
NIC
Network Interface Card — hardware that connects a host to the network.
OSI
Open Systems Interconnection — the 7-layer networking reference model.
PKI
Public Key Infrastructure — framework of keys and certificates.
RADIUS
Remote Authentication Dial-In User Service — centralized AAA.
RAID
Redundant Array of Independent Disks — disk redundancy/performance.
RDP
Remote Desktop Protocol — remote GUI access to Windows (port 3389).
SIEM
Security Information and Event Management — log aggregation and correlation.
SMTP
Simple Mail Transfer Protocol — sends email (port 25).
SNMP
Simple Network Management Protocol — monitors network devices (161/162).
SSD
Solid State Drive — flash-based storage with no moving parts.
SSH
Secure Shell — encrypted remote command-line access (port 22).
SSID
Service Set Identifier — the name of a wireless network.
SSO
Single Sign-On — one set of credentials for multiple systems.
TCP
Transmission Control Protocol — reliable, connection-oriented transport.
TLS
Transport Layer Security — modern encryption protocol, successor to SSL.
TPM
Trusted Platform Module — chip that stores keys for full-disk encryption.
UDP
User Datagram Protocol — fast, connectionless transport.
UEFI
Unified Extensible Firmware Interface — modern BIOS replacement.
UPS
Uninterruptible Power Supply — battery backup for clean shutdowns.
VLAN
Virtual LAN — logically segments a switch into separate networks.
VPN
Virtual Private Network — encrypted tunnel over a public network.
WPA
Wi-Fi Protected Access — WPA is legacy; use WPA2 or WPA3, with WPA3 the current standard.
AAA
Authentication, Authorization, and Accounting — framework for controlling and tracking access.
CAT
Category — performance rating for twisted-pair Ethernet cabling, such as Cat 5e, Cat 6, or Cat 6A.
DDoS
Distributed Denial of Service — availability attack launched from many systems at once.
EAP
Extensible Authentication Protocol — framework used for network access authentication, including 802.1X.
GDPR
General Data Protection Regulation — European Union privacy law governing personal data.
HTTP
Hypertext Transfer Protocol — web application protocol, typically using port 80 without TLS.
ICMP
Internet Control Message Protocol — carries diagnostic and error messages, including ping.
IMAP
Internet Message Access Protocol — email retrieval protocol that keeps messages synchronized with the server.
IoT
Internet of Things — network-connected devices such as sensors, cameras, and appliances.
IP
Internet Protocol — network-layer protocol that addresses and routes packets between networks.
ISP
Internet Service Provider — organization that provides Internet connectivity.
MDM
Mobile Device Management — centralized management and security controls for mobile devices.
NFC
Near Field Communication — short-range wireless technology used for contactless communication.
OS
Operating System — software that manages hardware resources and provides services to applications.
PCI DSS
Payment Card Industry Data Security Standard — security requirements for organizations that handle cardholder data.
PII
Personally Identifiable Information — data that can identify, contact, or locate an individual.
PoE
Power over Ethernet — supplies electrical power and network data through Ethernet cabling.
POP3
Post Office Protocol version 3 — email retrieval protocol that commonly downloads messages to a client.
PXE
Preboot Execution Environment — standard for booting a computer from a network before an operating system is installed.
RAM
Random Access Memory — volatile working memory used by active programs and the operating system.
ROM
Read-Only Memory — nonvolatile storage that retains firmware or other data without power.
SATA
Serial Advanced Technology Attachment — interface used to connect storage devices such as HDDs and SSDs.
SFTP
SSH File Transfer Protocol — secure file transfer protocol that runs over SSH.
SLA
Service Level Agreement — documented service expectations, responsibilities, and performance targets.
SQLi
SQL Injection — attack that manipulates database queries through unsafely handled input.
SSL
Secure Sockets Layer — deprecated legacy encryption protocol replaced by TLS.
USB
Universal Serial Bus — standard for connecting peripherals and delivering power and data.
VoIP
Voice over Internet Protocol — technology that delivers voice calls over IP networks.
WAP
Wireless Access Point — device that provides wireless clients with access to a wired network.
WLAN
Wireless Local Area Network — local network that uses Wi-Fi or another wireless technology.
XSS
Cross-Site Scripting — attack that injects untrusted script into a web page viewed by other users.
ZTNA
Zero Trust Network Access — access model that verifies users and devices before granting application access.

Ready to test recall? Jump into free practice questions across every CompTIA exam.