Adversary Emulation

Noun · Security & Infosec

Definitions

  1. A security testing method that recreates the behaviors, tools, and tactics of a real threat actor to evaluate defenses under realistic conditions. It differs from generic pentesting by being threat-informed and behaviorally grounded.

    In plain English: Security testing that imitates how a real attacker group operates.

    Example: "The engagement focused on adversary emulation of a ransomware affiliate rather than a broad vulnerability sweep."

Related Terms