home/dictionary/Anomaly-Based Detection

Anomaly-Based Detection

nouncandidate·updated May 9, 2026

The process of comparing definitions of what activity is considered normal against observed events to identify significant deviations.

Framework senses

NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
The process of comparing definitions of what activity is considered normal against observed events to identify significant deviations.
NIST SP 800-941 senseview framework →
§1
The process of comparing definitions of what activity is considered normal against observed events to identify significant deviations.