The terms businesses meet most often when making software, hardware and compliance decisions, in one place. Each definition starts with a short explanation and links to the guide on our blog that covers the topic in depth.
Technology and Digital Transformation Glossary
Clear, short definitions of access control, business email, Industry 4.0, IoT, AI, data and compliance terms, each linked to an in-depth guide.
3
- 3-2-1 backup rule
The 3-2-1 backup rule means keeping at least three copies of your data, on two different types of media, with one copy stored at another location. Against ransomware, at least one copy should also be immutable or offline, and backup accounts should be kept separate from the main systems. A backup whose restore is never tested offers no real assurance in an incident. More: Ransomware and the 3-2-1 backup rule · Service: Cyber security
8
- 8D problem solving
8D is a structured problem-solving method that tackles a quality issue in eight disciplines: form a team, define the problem, protect the customer with containment, prove the root cause with data, choose and verify a permanent correction, change the system to prevent recurrence and recognise the team. The aim is not to close the complaint but to stop the problem coming back. More: 8D problem solving · Service: Quality management system
A
- Access card cloning
Access card cloning is reading the credential stored on an access card and writing it to another card or device so it can be used for unauthorised entry. Older cards without encryption can be copied quickly with inexpensive readers; the door then recognises only the number, not the person holding it. Upgrading card technology and cancelling lost cards immediately are the basic defences. More: Access card cloning risk · Service: Card access control
- Access control system
An access control system is an electronic system that decides who may pass through which doors, turnstiles or barriers, and when, using cards, QR codes or biometrics, while logging every entry. It removes the problem of copied and lost keys, and access can be granted or revoked in a single step. More: Card access control system guide · Service: Card access control
- Agent assist
Agent assist is an AI tool that works alongside customer service agents during a call or chat, suggesting reply drafts, summarising the case and finding the relevant procedure. Unlike a chatbot, a person still talks to the customer, and no suggestion reaches the customer until the agent approves it. That makes it usable even for sensitive matters such as complaints. More: Agent assist AI for customer service · Service: NLP and chatbot
- AI acceptable use policy
An AI acceptable use policy is an internal document setting out which AI tools staff may use, for which tasks, with which data and with whose approval. It is more than a list of bans: it brings together scope, roles, approval of use cases, responsibility for outputs, training and a review schedule. It is the foundation for keeping company data out of uncontrolled tools. More: AI acceptable use policy · Service: AI integration
- AI agent
An AI agent is AI software that breaks a goal into steps, chooses and runs tools in company systems for each step, such as an ERP query, an email draft or opening a record, and checks the result before deciding what to do next. A chatbot answers; an agent acts. That is why both its value and its risk lie in the limits of its permissions. More: AI agents for business · Service: AI integration
- AI assistant (copilot)
An AI assistant, often called a copilot, is an AI tool that works alongside an employee in the screen they already use, offering suggestions for answering questions, drafting text or finding documents. It does not do the job in the person’s place; the decision and final approval stay with them. Grounded in company documents, it helps less experienced staff reach the right information quickly. More: AI maintenance assistant · Service: Enterprise LLM assistant
- AI hallucination
An AI hallucination is when a language model presents unsupported or false information fluently and confidently, as if it were fact. It cannot be eliminated but it can be managed: grounding the model in your own documents (RAG), citing a source with every answer, allowing it to say "I don't know" and measuring accuracy against a fixed question set all reduce the risk considerably. More: How to reduce AI hallucinations · Service: Enterprise LLM assistant
- AI literacy
AI literacy is an employee’s ability to understand what AI tools can and cannot do, to check their output and to know which data must not be shared. The EU AI Act also expects organisations that use AI to ensure their staff have a sufficient level of AI literacy. Training should focus less on tool features and more on judgement and verification. More: AI acceptable use policy · Service: Digital transformation consultancy
- AI pilot project
An AI pilot project is the first live trial of a use case in a limited team or process, using real data and success criteria agreed in advance. The aim is not to show off the technology but to measure whether the work actually gets faster or more accurate. A positive result becomes the basis for the decision to roll out. More: Where to start with AI in business · Service: AI integration
- AI summarisation
AI summarisation uses a language model to turn a long meeting recording, email thread or document into a short, structured text. A useful summary is not a general narrative; it lists the decisions taken, the owners and the deadlines separately. It should stay grounded in the source, and critical details should be checked by a person before it is shared. More: AI meeting notes and summaries · Service: Enterprise LLM assistant
- AI use case
An AI use case is a single, well-defined job that AI takes on in a specific department, with specific data and a measurable goal, such as reading incoming invoices or drafting replies to customer emails. It turns a vague aim like "let us use AI" into a project with an owner, a clear input and a success measure. More: AI use cases in business · Service: AI integration
- AIOps (AI for IT operations)
AIOps is an approach that uses AI to analyse logs, metrics and alerts from IT systems together, grouping related alerts into a single incident, spotting unusual behaviour and suggesting the likely root cause. It cuts the alert noise produced by classic fixed-threshold monitoring and helps teams notice outages earlier and resolve them faster. More: AIOps explained · Service: Anomaly detection
- ALCOA+ (data integrity principles)
ALCOA+ is the set of principles defining data integrity for records in pharmaceutical and other regulated manufacturing: every record must be Attributable, Legible, Contemporaneous, Original and Accurate, and in addition complete, consistent, enduring and available. Inspectors judge whether records can be trusted against these criteria, so they need to be built into shop floor and laboratory systems as controls. More: GMP data integrity and ALCOA+ · Service: Quality management system
- AMR (automatic meter reading, OSOS)
Automatic meter reading (known in Turkey as OSOS) is the collection of water, electricity, gas and heat meter readings at set intervals by a communication device attached to the meter, which sends them to central software. Meter readers no longer go door to door, billing errors and disputes fall, and tampered or faulty meters are spotted without waiting for the next reading cycle. More: Automatic meter reading guide · Service: OSOS meter reading
- Andon system
An andon system is an alert arrangement that lets a line operator call for help the moment a problem appears, using a button, cord or terminal, and makes that call instantly visible to the right team through lights, sound and display boards. It comes from lean manufacturing: problems are surfaced where and when they happen rather than hidden, and response times become measurable. More: Andon system explained · Service: MES production management
- Anomaly detection
Anomaly detection is the automatic identification of records in transaction, meter, sensor or log data that deviate from normal behaviour. A good system learns what normal looks like for each machine, subscriber or user from history, scores every new record against it and flags suspicious ones with a reason. The aim is not the most alerts but an accurate number the team can actually investigate. More: Anomaly detection for business · Service: Anomaly detection
- Anti-passback
Anti-passback is an access control rule that stops a card from being used to enter again until it has been presented at an exit. It prevents a card being passed back to someone outside for a second entry, and keeps the record of who is on site accurate. On its own it does not stop tailgating; that needs a physical measure such as a turnstile. More: Anti-passback explained · Service: SmartPass
- API (Application Programming Interface)
An API is a defined, controlled doorway that a piece of software opens so other systems can send and receive data; API integration is two systems exchanging data automatically through those doorways. An online order lands in the ERP instantly, stock updates on both sides, and invoice and shipping details flow without manual transfer, eliminating double entry and copying errors. More: API integration explained · Service: API integration
- APS (Advanced Planning and Scheduling)
APS is planning software that turns incoming orders into a finite-capacity schedule, deciding which job runs on which resource, in what sequence and when, based on machine, labour and material availability. Because it accounts for real machine free time, changeover times and material status, it gives realistic delivery dates and shows the impact of any change straight away. More: Production scheduling with APS · Service: Production planning and scheduling
- Automatic number plate recognition (ANPR)
Automatic number plate recognition (ANPR) reads a vehicle's number plate from a camera image, checks it against a list of authorised plates and opens the barrier accordingly. It speeds up entry for staff, supplier and visitor vehicles without cards, and records each vehicle's entry and exit times. Lighting, camera angle and dirty plates affect read accuracy. More: Vehicle access control system · Service: License plate recognition
B
- BACnet
BACnet (Building Automation and Control Networks) is an open communication protocol that lets building equipment such as air handling units, chillers, boilers, lighting and energy meters exchange data regardless of manufacturer. It is defined by the ANSI/ASHRAE 135 standard and also published as ISO 16484-5. In building automation it allows integration without being locked into a single vendor. More: BACnet building automation · Service: Smart building BMS
- BI dashboard
A BI dashboard is a reporting screen that automatically pulls a company's key performance indicators from ERP, CRM and production systems and shows them on one screen, calculated by the same rule for everyone. It replaces manually assembled spreadsheet reports. A useful dashboard is designed together with its data sources, refresh frequency, drill-down, threshold colours, glossary of definitions and access rights. More: Building a management BI dashboard · Service: BI dashboard
- Bin location system
A bin location system gives every zone, aisle, rack, level and bin in a warehouse a unique, readable code and links each item to that address. The address is printed as a barcode on the shelf label and scanned during put-away and picking. Stock location no longer depends on staff memory, so new starters become productive quickly and counts become easier. More: Warehouse bin location system · Service: WMS
- Biometric verification
Biometric verification confirms a person's identity from physical characteristics such as a fingerprint, face or palm vein pattern. Because it cannot be lent like a card, it stops colleagues clocking in for one another. Under Turkey's KVKK, however, biometric data is a special category of personal data, so its use carries extra conditions such as explicit consent and an alternative method. More: Biometric attendance and data protection · Service: Fingerprint access
- BMS (Building Management System)
A BMS is the management layer that monitors a building's heating, cooling and ventilation (HVAC), lighting, energy metering, fire and access control systems from one piece of software and lets them work together. It moves a building from reacting to conditions towards running on occupancy and schedules, and makes energy waste visible. Digital Bridge's BMS works with Modbus, BACnet, KNX and DALI. More: Smart building BMS guide · Service: Smart building BMS
- Business email compromise (BEC)
Business email compromise (BEC) is a fraud in which an attacker uses a hijacked or impersonated business email account to pose as a supplier, executive or customer and request a payment or a change of bank details. Because the messages often carry no malicious content, filters rarely catch them. The most effective control is confirming any bank detail change by calling a known phone number. More: Bank detail change email fraud
C
- CBAM (Carbon Border Adjustment Mechanism)
CBAM (Carbon Border Adjustment Mechanism, known in Turkey as SKDM) is the EU regulation that places a carbon cost on imports of cement, iron and steel, aluminium, fertilisers, electricity and hydrogen in line with the embedded emissions released in producing them. The EU importer pays, but the calculation relies on verifiable, installation-level emissions data supplied by the Turkish producer. More: CBAM reporting in Turkey · Service: Energy monitoring and management
- CDP (Customer Data Platform)
A CDP (customer data platform) is software that merges the data a customer leaves across channels such as the website, online shop, marketplaces, CRM, contact centre, email and stores into a single persistent profile, and feeds that profile back into marketing, sales and service systems. It answers "who is this customer, what have they done and what have they consented to?" in one place. More: Customer data platform (CDP) · Service: CRM
- Chatbot
A chatbot is a virtual assistant that answers questions by exchanging messages with users on a website, mobile app or WhatsApp. In customer service it handles repetitive questions such as order status, returns and product details using the company's own data. A good bot does not guess when it does not know; it hands the conversation, with its history, to a human agent. More: Customer service chatbot · Service: NLP and chatbots
- CMMS (Computerised Maintenance Management System)
A CMMS is software that holds a single record of an organisation's machines and equipment, the breakdown and planned maintenance work orders carried out on them, the spare parts used and the full maintenance history. It moves maintenance away from memory and paper towards something planned and measurable, and provides evidence of maintenance during audits. More: CMMS maintenance management software · Service: Predictive maintenance
- Cold chain monitoring
Cold chain monitoring is the continuous measurement and recording of temperature in cold stores, refrigerated vehicles and production areas with sensors, sending an instant alarm to the person responsible when a limit is breached and reporting the records as evidence for the HACCP file. Manual readings twice a day cannot see deviations between readings; continuous monitoring cuts the risk of spoiled product and the effort of audit preparation. More: Cold chain monitoring and HACCP · Service: Cold chain monitoring
- Computer vision
Computer vision is the automatic analysis of camera images by software to extract information such as objects, defects, people or number plates. In quality inspection, every product passing on the line is checked in real time for scratches, cracks, colour deviation or missing parts; rejects are diverted and their images logged. Success depends on the right camera, lighting and a pilot measured on real products before the model itself. More: Computer vision quality inspection · Service: Computer vision
- Cpk (process capability index)
Cpk is a capability index that shows how reliably a process produces within its tolerance limits. Cp only compares the spread of the process with the width of the tolerance, whereas Cpk also accounts for how far the mean has drifted from the centre. It is a core output of statistical process control (SPC), and customers in sectors such as automotive routinely ask suppliers for it. More: SPC, Cp and Cpk explained · Service: Quality management system
- CRM (Customer Relationship Management)
CRM is software that keeps the full sales and communication history with prospects and customers, from first contact through quote, order and payment, in one shared record. Combined with a sales pipeline, it shows which opportunity is waiting at which stage and where deals are lost, and customer knowledge stays with the company when a salesperson leaves. More: CRM sales pipeline guide · Service: CRM
- Cross-border data transfer
A cross-border data transfer is sending personal data to, or making it accessible from, a recipient outside Turkey; using cloud, email or AI services hosted abroad counts too. Since the 2024 amendment to KVKK, a transfer must rest on an adequacy decision, appropriate safeguards such as standard contractual clauses, or one of the conditions for occasional transfers. More: KVKK cross-border data transfer · Service: Data protection compliance
- Customer churn analysis
Customer churn analysis is measuring which customers stopped buying, or bought markedly less, during a given period, and why and with what warning signs. In B2B, customers rarely announce that they are leaving; order frequency drops and basket size shrinks. The aim of the analysis is to spot that decline before the customer goes and to act in time. More: Customer churn analysis for B2B · Service: CRM
D
- Data breach notification
Data breach notification is the duty of a data controller who learns that personal data has been unlawfully obtained by others to notify Turkey's Personal Data Protection Board without delay and within 72 hours at the latest, and then the affected people as soon as reasonably possible. As the clock starts when the breach is discovered, the response plan and owners must be set before an incident. More: Data breach notification within 72 hours · Service: Data protection compliance
- Data catalogue
A data catalogue is a searchable metadata inventory that lists, in one place, where an organisation's data assets such as tables, reports, files and APIs live, what they mean, who owns them and where they are fed from. A data dictionary is the technical definition of fields in a single database: the dictionary answers "what is this column?", the catalogue "where is the data I need, and can I trust it?" More: Data catalogue vs data dictionary · Service: Data governance and quality
- Data controller and data processor
A data controller is the person or organisation that decides why and how personal data is processed and is responsible for the filing system; a data processor processes that data on the controller's behalf and under its instructions, such as a cloud provider or payroll bureau. The distinction determines who carries responsibility and where a written agreement is needed. More: Data processing agreements in Turkey · Service: Data protection compliance
- Data drift and concept drift
Data drift is when the input data reaching a live model moves away from the distribution of the data it was trained on; when the relationship between inputs and outcomes itself changes, it is called concept drift. A new product, supplier or shift in customer behaviour can quietly erode accuracy, so drift is monitored and the model retrained when needed. More: MLOps explained · Service: Custom AI model training
- Data governance
Data governance is the set of rules, roles and processes that determines who owns an organisation's data, how it is defined, which quality rules it must meet and who may access it. The goal is for everyone to trust the same number. It starts small: owners are assigned to a few critical data domains, definitions are written down and quality is measured regularly. More: Data governance framework · Service: Data governance and quality
- Data labelling
Data labelling is the work of marking the correct answer on the examples an AI model will learn from: drawing a box around a defect in a photo, tagging an email as "invoice" or "complaint", or transcribing an audio recording. Because the model generalises from these labels, label quality directly determines the quality of the decisions it makes in production. More: Data labelling for AI · Service: Custom AI model training
- Data lake
A data lake is a central store that keeps every kind of data, such as sensor streams, log files, images, PDFs and system exports, in raw form on low-cost storage without forcing it into a schema first. Unlike a data warehouse, structure is applied when the data is read. A warehouse suits reporting and a lake suits exploration and AI; the lakehouse architecture brings the two closer. More: Data lake vs data warehouse · Service: Data warehouse
- Data masking
Data masking hides personal or confidential details, such as national ID numbers, phone numbers or addresses, or replaces them with meaningless values before the data is sent to another system, such as an AI model. The model can still do its job while unnecessary processing and cross-border transfer of personal data are reduced, making it a basic technical safeguard for data protection compliance. More: AI and personal data protection · Service: Data protection compliance
- Data quality
Data quality is the degree to which a record is accurate, complete, unique, valid and current for the job it is used for. The most common and costly problem is the same customer, supplier or product being recorded more than once, which distorts reports, invoices and stock. Duplicates are found using strong keys such as tax numbers, merged with the business owner and prevented by entry rules. More: Data quality and duplicate records · Service: Data governance and quality
- Data retention and disposal policy
A data retention and disposal policy is an internal document that sets how long each category of personal data is kept and, once that period ends, how it is disposed of (deletion, destruction or anonymisation), how often disposal runs and who is responsible. Data kept longer than needed increases the damage of a breach, while documented disposal is evidence of compliance in an audit. More: Data retention and disposal policy · Service: Data protection compliance
- Data warehouse
A data warehouse is a structure in which data from different systems such as ERP, CRM, e-commerce, production and HR is brought together in one database for reporting and analysis, with shared definitions and full history. Data is pulled and cleaned automatically through ETL processes. Reports then run from a single source without slowing live systems, and everyone sees the same figure. More: Data warehouse and ETL explained · Service: Data warehouse
- Demand forecasting
Demand forecasting is predicting next period's sales by product, branch or customer by combining historical sales with seasonality, promotions, prices, public holidays and, where relevant, weather. An AI-assisted model links the forecast to safety stock and reorder points and produces a reasoned order suggestion. Its value comes from changing purchasing and production decisions. More: AI demand forecasting · Service: Demand forecasting analytics
- Digital HACCP and food traceability
Digital HACCP is the practice of keeping critical control point measurements, temperature and cleaning records in a single timestamped system instead of paper forms. Combined with food traceability, it shows in a single query which raw material lot went into which product and which customer received it, shortening audit preparation and narrowing the scope of any problem batch. More: Food traceability and digital HACCP · Service: Production traceability and barcoding
- Digital maturity assessment
A digital maturity assessment is a structured, evidence-based analysis of how developed a business's digital capabilities are today across strategy, processes, data, technology, security, people and customers. Its output is not a score but a priority order: it shows which gap to close first and which investment can wait. In Turkey it is also a key document for SME support applications. More: Digital maturity assessment · Service: Digital transformation consultancy
- Digital product passport (DPP)
A digital product passport is an electronic record that makes a product's material composition, supply chain, recycled content, care, repair and recycling information accessible through a data carrier on the product, usually a QR code. It is introduced by the EU's Ecodesign for Sustainable Products Regulation (ESPR), with textiles among the priority product groups, so manufacturers selling into the EU should start collecting the data now. More: Digital product passport for textiles · Service: Textile and apparel
- Digital transformation roadmap
A digital transformation roadmap is a written, staged plan showing which business problems across sales, finance, office and field operations will be solved, in what order, with which technology and against which measure. A good roadmap starts not with a software list but with a process inventory and measurable goals; it proves value with a small pilot and only then scales up. More: Digital transformation roadmap · Service: Digital transformation consultancy
- Digital twin
A digital twin is a virtual copy of a machine, production line or process that is kept up to date with real data from the shop floor. It lets teams test changes as scenarios in a virtual setting before touching the real system, and spot bottlenecks and failure trends in advance. Its value depends on the quality of the sensor and production data it receives. More: Digital twin in manufacturing · Service: MES production management
- DKIM (DomainKeys Identified Mail)
DKIM (DomainKeys Identified Mail) is a standard that adds a digital signature to outgoing email using the sending domain's private key, which the recipient verifies against a public key published in DNS. This proves the message was not altered in transit and genuinely came from that domain. For DMARC to pass, at least one of SPF or DKIM must pass and align. More: SPF, DKIM and DMARC explained · Service: Smart360
- DLP (Data loss prevention)
DLP (data loss prevention) is the set of tools and policies that detect and block sensitive data leaving the organisation without authorisation via email, cloud sharing, USB drives or web uploads. It first requires classifying which data is sensitive. It reduces both deliberate leaks and careless mistakes such as sending a file to the wrong recipient. More: Data loss prevention (DLP) · Service: Cyber security
- DMARC
DMARC (Domain-based Message Authentication, Reporting and Conformance) is a policy published by a domain owner that ties SPF and DKIM results to the visible From address and tells receivers what to do with mail that fails: none, quarantine or reject. It also collects reports from receiving servers. It is the key tool for stopping your domain being used in fake invoice and phishing emails. More: SPF, DKIM and DMARC explained · Service: Smart360
- DMARC report
A DMARC report is a summary, usually a daily XML file, sent by receiving servers showing which IP addresses sent mail using your domain and whether each passed SPF, DKIM and DMARC. These reports reveal forgotten sending services and spoofing attempts, and reading them is the prerequisite for safely moving your policy up to reject. More: How to read DMARC reports · Service: Smart360
E
- e-Archive invoice (e-Arşiv Fatura)
An e-archive invoice (e-Arşiv Fatura) is an invoice created electronically and reported to the Turkish Revenue Administration (GİB), issued to buyers not registered for e-invoicing, such as consumers and unregistered businesses. The buyer receives it by email or as a printout on request, while the original is kept electronically. If the buyer is registered for e-invoicing, an e-invoice is issued instead, and the ERP must make that distinction. More: e-Archive invoice in Turkey · Service: ERP
- e-Invoice integration (Turkey)
E-invoice integration is the automatic conversion of an invoice, the moment it is raised in the ERP or accounting system, into an electronic document in the Turkish Revenue Administration's UBL-TR format and its delivery to the buyer via a private integrator or the Revenue Administration's platform. Incoming invoices flow back into the ERP the same way, reducing double entry, delays and compliance risk. More: E-invoice integration in Turkey · Service: Integrated systems
- e-Ledger (e-Defter)
An e-ledger (e-Defter) is the journal and general ledger that Turkish tax and commercial law require companies to keep, produced electronically in the XBRL-GL format set by the Revenue Administration (GİB), signed with a financial seal or e-signature, and stored after GİB issues its approval receipt (berat). It replaces paper books and notary certification, but every bookkeeping error now flows straight into the official ledger. More: e-Ledger in Turkey · Service: ERP
- e-SMM (electronic self-employment receipt)
An e-SMM (electronic self-employment receipt) is the electronic version, created and stored to the Turkish Revenue Administration (GİB) standard, of the receipt that self-employed professionals such as lawyers, accountants, architects, engineers, doctors and consultants issue for every payment they collect. It is mandatory for self-employed people who are not tax-exempt, is issued via the GİB portal or a private integrator and can be automated from accounting software. More: e-SMM in Turkey · Service: ERP
- e-Waybill (e-İrsaliye)
An e-waybill (e-İrsaliye) is a dispatch note issued electronically to the Turkish Revenue Administration (GİB) standard, sent to the recipient and stored, replacing the paper delivery note. Switching over is more than choosing an integrator: because the waybill comes into existence the moment goods leave the warehouse, shipping flows, the ERP and warehouse records must be prepared together. Done well, dispatch, stock and invoicing share the same data. More: e-Waybill in Turkey · Service: Warehouse and inventory management
- Edge computing
Edge computing is an approach that processes data right next to where it is generated, on a device inside the machine, line or site, and sends only the results to the cloud or head office. In manufacturing it suits decisions that need millisecond responses, tasks that must keep running if the connection drops and sensors that produce very large volumes of raw data, while also cutting bandwidth and cloud costs. More: Edge computing in manufacturing · Service: Remote monitoring
- EDI (Electronic Data Interchange)
EDI is the exchange of business documents such as orders, despatch advices and invoices between two companies' systems in a pre-agreed standard format, with no manual re-keying. It removes the step of reading an order from an email and typing it into the ERP, cutting data entry errors and delays. In sectors such as automotive, large customers expect suppliers to trade via EDI. More: What is EDI? · Service: API integration
- EDMS (Electronic Document Management System)
An EDMS is software that records, routes for approval and stores an organisation's incoming and outgoing correspondence, internal memos and documents, from creation through archiving to disposal, in a single digital system. The key to a paperless office is not scanning but ensuring every document has one valid version, a named owner and a traceable approval trail. More: Paperless office and document management · Service: Document management system
- ELT (Extract, Load, Transform)
ELT (extract, load, transform) is a data integration approach in which raw data is loaded into the target warehouse or lake first and cleaned and transformed afterwards using the warehouse's own processing power. Because raw data is retained, transformation rules can be changed later. The choice between ELT and ETL depends on infrastructure, data volume, personal data rules and team skills. More: ETL vs ELT · Service: Data warehouse
- Email archiving
Email archiving is the central, tamper-resistant and searchable storage of business correspondence for a defined period. It secures access to messages when they are needed for commercial disputes, audits or evidence. Because emails also contain personal data, retention periods, access rights and deletion rules must be set in line with data protection law. More: Email archiving and data protection · Service: Data protection compliance
- Email encryption
Email encryption is the umbrella term for methods that stop unauthorised people reading message content. TLS, which protects mail in transit between servers, and end-to-end encryption such as S/MIME or OpenPGP, which only the recipient can open, address different risks. Organisations sending sensitive content such as contracts, payroll or health data should decide which method applies in which case. More: Business email encryption · Service: Cyber security
- Email quarantine
Email quarantine is a security mechanism that holds suspicious incoming messages in a separate area instead of delivering or deleting them, until an authorised person reviews and releases or removes them. If the threshold is too lenient, harmful mail gets through; if too strict, genuine invoices and quotes go missing, so the organisation needs a defined quarantine policy. More: Email quarantine policy · Service: Smart360
- Embedding
An embedding is the conversion of a piece of text, an image or audio into a fixed-length array of numbers by an AI model, so that its meaning can be compared mathematically. Content with similar meaning produces nearby vectors, so a "leave request" can match a "holiday application" without shared words. Semantic search, RAG and similar-document lookup all rely on it. More: Vector database explained · Service: Enterprise LLM assistant
- Emergency muster list
An emergency muster list shows, in real time and from access control records, who is inside a building or zone during a fire or evacuation. It is the basis for the roll call at the assembly point: missing people are identified quickly and rescue teams receive accurate information. For it to be reliable, exits must be recorded as well as entries. More: Emergency muster list from access control · Service: SmartPass
- ERP (Enterprise Resource Planning)
ERP is management software that brings purchasing, inventory, production, sales, shipping and finance together in a single database. Its value lies in ending the practice of keeping the same information in scattered spreadsheets, so that questions about stock, order profitability or outstanding balances get one current answer. More: What is ERP and when does a small business need it? · Service: ERP
- ETL (Extract, Transform, Load)
ETL (extract, transform, load) is the process of automatically pulling data from sources such as ERP, CRM or production systems, cleaning and transforming it according to business rules, and then loading it into a data warehouse. The transformation happens in a separate layer before the data enters the warehouse. It lets reports draw on one consistent source without slowing down live systems. More: ETL vs ELT · Service: Data warehouse
- EU AI Act
The EU AI Act (Regulation 2024/1689) is the European Union regulation that classifies AI systems by risk level and places different obligations on each class. Turkish companies fall within scope when they offer AI-based products or services on the EU market or when a system's output is used in the EU. The first step is to inventory your AI uses and assign each a risk class. More: EU AI Act for Turkish companies · Service: Data protection compliance
- Explicit consent (KVKK)
Explicit consent under KVKK is consent that relates to a specific matter, is based on information and is given freely. Where another legal basis applies, such as a contract, a legal obligation or legitimate interest, consent should not be requested; needless consent can block the process once withdrawn. It must not be confused with the duty to provide a privacy notice. More: Explicit consent vs privacy notice · Service: Data protection compliance
F
- Fail-safe and fail-secure locks
A fail-safe lock opens when its power is cut, while a fail-secure lock stays locked when power is lost. The choice depends on the door's role: fail-safe is preferred on escape routes so people can get out; if a fail-secure lock is used on an escape door, a mechanical handle or panic bar must allow keyless exit from inside. More: Access control and fire alarm integration · Service: Card access control
- FEFO (First Expired, First Out)
FEFO is an inventory issue method in which the batch with the nearest expiry date is dispatched first, regardless of when it arrived. For goods with a shelf life, such as food, medicines and chemicals, it reduces written-off stock and prevents short-dated products reaching customers. It only works when the lot and expiry date are captured at goods receipt. More: FIFO and FEFO inventory methods · Service: WMS
- Field service management (FSM)
Field service management is software that brings the whole service flow into one system, through an office dashboard and a technician mobile app: from logging the request and assigning a technician to recording the work done, parts used and customer signature, through to invoicing. Managers see each job's status without phoning round, and no parts or labour go unbilled. More: Field service management guide · Service: Field service management
- FIFO (First In, First Out)
FIFO is an inventory issue method in which the batch that entered the warehouse first is dispatched first. For goods without an expiry date it is the simplest way to stop stock ageing or being forgotten on the shelf, but it only works when every batch is recorded with its receipt date and location. For perishable goods, FEFO takes its place. More: FIFO and FEFO inventory methods
- File version control
File version control is a document management feature that creates a new version each time a document changes, instead of overwriting it, so earlier versions can be viewed and restored. It ends the "final_v3_really_final" naming chaos, helps undo accidental edits and ransomware damage, and shows who changed what. More: Document version control · Service: Smart360
- Fine-tuning
Fine-tuning is the further training of a ready-made AI model on a company's own records, documents or images to adapt it to a specific task. General models are strong on general knowledge but do not know your product codes, defect types or industry terms. It is the right route when the task repeats, your data is distinctive and neither an off-the-shelf model nor RAG gives enough accuracy. More: Custom AI model training · Service: Custom AI model training
G
- Generative AI
Generative AI is a type of artificial intelligence that produces new text, images, code or audio based on patterns learned from its training data. In companies it is used mostly for drafting, summarising, translating and finding information inside documents. The gains last when the output is checked and company data stays protected within a defined workflow. More: AI productivity impact research · Service: Enterprise LLM assistant
- GIS (Geographic Information System)
A GIS (geographic information system) is a software platform that holds assets such as pipes, valves, roads, street lights, land parcels and subscribers on a single map with their locations, and lets you query and analyse that location data. For municipalities it quickly answers questions like "which subscribers are affected if this valve is closed?", moving fault, water loss and zoning decisions from guesswork to measurement. More: GIS for municipalities · Service: Geographic information systems
- GTIN (Global Trade Item Number)
A GTIN is the number that uniquely identifies a product and its packaging level worldwide within the GS1 system. The same GTIN is carried in different symbols depending on where it is scanned: EAN-13 at the retail till, ITF-14 or GS1-128 on cartons, and GS1 DataMatrix on medicines and medical products. Correct coding lets suppliers, warehouses and retailers recognise a product without mix-ups. More: GS1 barcode types · Service: Production traceability and barcodes
H
- Human-in-the-loop
Human-in-the-loop is a way of working in which a suggestion, draft or decision produced by AI is checked by an authorised employee before it has any effect. In work that touches customers, employees, money or regulation, it stops errors from getting out. Approved and corrected examples also provide data for improving the system over time. More: Human-AI collaboration at work · Service: AI integration
I
- IATF 16949
IATF 16949 is the quality management system standard for suppliers of parts and services to the automotive industry, built on ISO 9001. It adds requirements on risk-based traceability planning, process capability and problem solving, and expects a supplier to trace a suspect product from raw material through to the customer. For supplying vehicle manufacturers it is usually a prerequisite. More: IATF 16949 digital traceability · Service: Automotive suppliers
- Industry 4.0
Industry 4.0 is an approach to manufacturing in which machines, people and business systems are connected through data, production is monitored in real time and decisions are based on that data. For a small manufacturer the right start is not a large smart-factory investment but picking the most expensive problem, such as downtime, scrap or hidden capacity, measuring it and expanding step by step. More: Industry 4.0 roadmap for SMEs · Service: Industry 4.0
- IP rating (IP65, IP67)
An IP rating is a two-digit classification, based on the IEC 60529 standard, that shows how well an enclosure is protected against dust and water. The first digit covers dust and the second covers water: IP65 withstands water jets from any direction, while IP67 withstands temporary immersion. It is a deciding factor when choosing sensors and terminals for outdoor or harsh sites. More: IP ratings explained · Service: Device manufacturing and IoT
- ISO 27001
ISO/IEC 27001 is the international standard that sets out the requirements for an information security management system (ISMS), through which an organisation systematically identifies and manages its information security risks. Certification follows an audit by an accredited certification body. Corporate and overseas customers often require it when choosing suppliers, and it overlaps with the technical and organisational measures expected under KVKK. More: ISO 27001 guide for SMEs · Service: Cyber security
- ISO 50001 (energy management system)
ISO 50001 is the international standard for energy management systems, helping an organisation measure its energy performance systematically, set targets and improve continually. It does not impose a set savings rate; instead it asks you to show, with verifiable data, where, how much and why energy is used. Continuous energy monitoring therefore makes certification and upkeep much easier. More: ISO 50001 energy management · Service: Energy monitoring and management
K
- KEP (Registered Electronic Mail)
KEP (Kayıtlı Elektronik Posta, Registered Electronic Mail) is Turkey's qualified form of email in which sending and delivery are recorded as legal evidence. It is based on Article 1525 of the Turkish Commercial Code and is available only from providers authorised by the telecoms regulator BTK. Companies use it for formal notices, contract terminations and official correspondence with public bodies where proof of delivery matters. More: Registered electronic mail (KEP) in Turkey
- KPI (Key Performance Indicator)
A KPI (key performance indicator) is a measure showing how close a company is to one of the few goals it has chosen for the period, with a written calculation rule, an owner, a target value and a threshold. KPIs are chosen by starting from the goal, not from everything that could be measured. An indicator without a written definition produces different numbers in different departments. More: How to set KPIs · Service: BI dashboard
- KVKK (Turkish Personal Data Protection Law)
KVKK is Turkey's Personal Data Protection Law No. 6698, which sets the core rules for processing personal data, the rights of data subjects and the obligations of data controllers. Almost every business that handles employee, customer or visitor data, or CCTV footage, falls within its scope. Failing to meet duties such as privacy notices, data security, retention and disposal, and breach notification can lead to administrative fines. More: KVKK compliance steps · Service: Data protection compliance
L
- Law No. 5651 log retention
Law No. 5651 log retention is the Turkish requirement for organisations that provide internet access to staff or guests to keep records showing which internal IP address was assigned to which device during which time window, and to be able to prove those records were not altered. Most hotels, hospitals, schools and companies offering guest Wi-Fi are in scope; without the logs they cannot answer judicial requests. More: Turkey's Law 5651 log retention · Service: Cyber security
- LLM (Large Language Model)
An LLM (large language model) is an AI model trained on a very large body of text that can answer questions, summarise, classify, translate and draft text. Its language ability is strong, but it does not know your company's procedures, price lists or product codes, so business use grounds it in company documents and limits what it may access. More: Retrieval augmented generation for the enterprise · Service: Enterprise LLM assistant
- Lookalike domain attack
A lookalike domain attack is when an attacker registers a domain closely resembling a real company's domain, using a swapped letter, an added word, a different extension or international characters, and sends email from it. Because such a domain can pass its own SPF, DKIM and DMARC checks, authentication alone is not enough; domain similarity has to be checked separately. More: Lookalike domain attacks · Service: Smart360
- LoRaWAN
LoRaWAN is a low-power wide-area network (LPWAN) protocol that lets battery-powered sensors send small amounts of data over long distances on unlicensed frequencies, with the gateway installed and run by the user. The gateway listens to every sensor within range and forwards the data over the internet to a network server. As no SIM subscription is needed, it suits large numbers of sensors spread across wide sites. More: LoRaWAN gateway guide · Service: Device manufacturing and IoT
M
- MDM (Master Data Management)
Master data management (MDM) is the combination of processes, rules and technology that ensures core business entities such as customers, suppliers, products, materials and employees are represented by the same single, correct record in every system. A "golden record" is set for each entity, along with where it is created, who may change it and how it is distributed to other systems. More: Master data management explained · Service: Data governance and quality
- MES (Manufacturing Execution System)
A MES is production software that records what happens on the shop floor in real time and without paper: which work order started on which machine, how many parts were made, how many were scrapped and why a machine stopped. ERP answers "what will we make?"; MES answers "what actually happened?". Digital Bridge's MES integrates with Logo, SAP, Mikro and bespoke ERPs. More: MES vs ERP · Service: MES production management
- MFA (Multi-factor authentication)
MFA (multi-factor authentication) is a sign-in method that requires, in addition to a password, a second independent proof such as an authenticator app code, a hardware key or biometrics. Even if a password is stolen or guessed, taking over the account becomes much harder. Email, remote access and administrator accounts are the first places to apply it. More: Multi-factor authentication for business · Service: Cyber security
- MLOps (Machine Learning Operations)
MLOps (machine learning operations) is the set of processes and tools that keeps an AI model working reliably once it is live. It covers versioning data and models, controlled releases, monitoring accuracy and data drift, retraining and rolling back. In short, it turns a model from a one-off project into a maintained production system. More: MLOps explained · Service: Custom AI model training
- Mobile access (NFC)
Mobile access is the use of a smartphone, via NFC or a similar short-range link, as the access credential instead of a physical card. There are no cards to print or hand out, access can be granted and revoked remotely, and the phone's own lock adds a further layer of verification. As not every employee has a suitable phone, most organisations run it alongside cards. More: Mobile access control and NFC · Service: Card access control
- Modbus
Modbus is an open, royalty-free industrial communication protocol in which a master (client) polls field devices (servers) in turn, reading or writing values held in numbered registers. The version running over an RS-485 line is Modbus RTU; the version over Ethernet is Modbus TCP. It remains one of the most common ways to collect data from energy analysers, PLCs and drives. More: Modbus RTU vs TCP · Service: System integrations
- MQTT
MQTT is a lightweight publish/subscribe messaging protocol in which devices publish data to a central broker under a topic name, and any software that needs the data subscribes to that topic. It uses little bandwidth and copes well with dropped connections, which is why it is widely used to carry data from sensors, gateways and remote sites to the cloud. More: MQTT for industrial IoT · Service: Remote monitoring
- MRP (Material Requirements Planning)
MRP is a method that explodes the bill of materials for every product in the production plan, nets off stock on hand and open orders, and calculates which materials must be ordered or made, in what quantity and by when. It helps a business cut both production stoppages caused by missing materials and cash tied up in excess stock. More: MRP explained · Service: ERP
- MTTR and MTBF
MTBF (mean time between failures) shows how long a piece of equipment runs on average between two breakdowns, and MTTR (mean time to repair) shows how long a breakdown takes to fix on average. A falling MTBF signals declining reliability; a rising MTTR points to a parts, knowledge or staffing problem. Maintenance assistants and predictive maintenance are measured with these two indicators. More: CMMS maintenance management software · Service: Predictive maintenance
N
- Natural language query
A natural language query lets a user ask a question in everyday language, such as "which region saw sales drop last quarter?", which AI turns into a database query and answers in readable form. The calculation should run in the database, with the language model only translating; without defined metrics it can produce fluent but wrong figures. More: AI-powered management reporting · Service: BI dashboard
- NB-IoT (Narrowband IoT)
NB-IoT is a cellular IoT technology that runs on a mobile operator's licensed network with a SIM subscription, designed for devices that send little data and need long battery life. The key difference from LoRaWAN is who runs the network: with NB-IoT you install no gateway, but coverage and subscription depend on the operator. It is a common choice for meters and widely dispersed sensors. More: LoRa vs NB-IoT vs cellular · Service: Device manufacturing and IoT
- NDVI (Normalised Difference Vegetation Index)
NDVI (normalised difference vegetation index) is a method that compares how much red light a plant absorbs with how much near-infrared light it reflects, giving each pixel a health value between -1 and +1. An NDVI map produced with a multispectral camera on a drone shows which parts of a field are under stress before the eye can see it, so fertilising and irrigation can be targeted. More: Drone NDVI analysis · Service: Drone data processing
- NIS2 Directive
NIS2 is the European Union's cyber security directive that places risk management, incident reporting and supply chain security obligations on organisations in critical and important sectors. Turkey is not directly in scope, but Turkish firms selling parts, software or services into the EU often have to meet its requirements indirectly through customer contracts, security questionnaires and audits. More: NIS2 requirements for suppliers · Service: Cyber security
- NLP (Natural Language Processing)
Natural language processing (NLP) is the field of AI that lets computers understand text written in human language, such as emails, customer requests, contracts or reviews, and classify it, extract information, summarise it and answer questions about it. For Turkish, its agglutinative structure and informal everyday spelling mean ready-made solutions built for English often fall short on accuracy. More: Turkish natural language processing · Service: NLP and chatbots
- Non-revenue water (NRW)
Non-revenue water is the volume of water put into a supply network that is never billed. It is the sum of physical losses, such as pipe bursts and leaks, and commercial losses, such as meter inaccuracies, misreads and illegal connections. It is calculated with a water balance, and district metering and night flow analysis narrow down where the loss occurs. For utilities it is a key indicator of lost revenue. More: Water loss analysis · Service: Public sector and municipalities
- NPS (Net Promoter Score)
NPS (Net Promoter Score) is a loyalty indicator calculated by asking customers how likely, from 0 to 10, they are to recommend you, then subtracting the percentage who answer 0–6 from the percentage who answer 9–10. The result ranges from −100 to +100. Its value lies not in the score itself but in following up with customers afterwards, especially low scorers, to close the loop. More: Net Promoter Score guide · Service: CRM
O
- OCR (Optical Character Recognition)
OCR (optical character recognition) is technology that recognises the text in a scanned or image-based document and turns it into editable text. When an invoice is split into fields such as supplier, tax number, date, VAT and total and passed to the ERP, manual data entry falls. A good system routes uncertain fields to a person; Turkish e-invoices and e-archive invoices are read straight from XML instead. More: OCR invoice processing · Service: Document OCR
- OEE (Overall Equipment Effectiveness)
OEE is a measure of how productively a machine runs during planned production time, calculated as Availability × Performance × Quality. Availability reflects stoppages, performance reflects speed losses and quality reflects parts that are not right first time. Its value for a business is separating losses by type so that improvement effort goes where it matters. More: How to calculate OEE · Service: MES production management
- Offline mode (access control)
Offline mode in access control means that when the server or internet connection is lost, door controllers keep deciding from the last permission list they received, store events locally and upload them once the link returns. Without it, an outage means either nobody can get in or doors are left uncontrolled. More: Access control offline mode · Service: Card access control
- ONVIF
ONVIF is an open industry standard that lets IP cameras, recorders and video management software from different manufacturers communicate through a common interface. For a business it means a scattered, multi-brand camera estate can be managed centrally without replacing hardware, and expanded later without vendor lock-in. Digital Bridge's IP camera solution works over ONVIF. More: IP camera ONVIF central management · Service: IP camera monitoring
- OPC UA
OPC UA (Open Platform Communications Unified Architecture) is a vendor-independent industrial communication standard that lets PLCs, machines and software from different manufacturers share data in a common, secure and meaningful way. Alongside a value, it carries which machine and sensor it belongs to and its unit, which is why it serves as the common language for SCADA, MES and ERP integration. More: OPC UA explained · Service: System integrations
P
- Penetration testing
Penetration testing is a controlled security test in which authorised specialists act like an attacker and try to find and exploit weaknesses in an organisation's network, applications or systems. Unlike automated scanning, it shows how far an attacker could get by chaining weaknesses together. The report is used to prioritise fixes and to give customers or auditors evidence. More: Penetration testing guide · Service: Cyber security
- Personal data inventory
A personal data inventory is a document listing, process by process, the personal data an organisation handles, with the data category, purpose, legal basis, data subject group, recipients, retention period and security measures. It underpins KVKK compliance, VERBIS registration and the retention and disposal policy; an out-of-date inventory undermines every other compliance document. More: KVKK personal data inventory · Service: Data protection compliance
- Phishing
Phishing is a social engineering attack in which the attacker poses as a trusted organisation or person to persuade the recipient to enter a password, open a malicious attachment or make a payment. It is one of the most common ways attackers first get into a company. Technical filters are not enough on their own; staff need to recognise fake senders, mismatched links and pressure to act urgently. More: How to spot phishing emails · Service: Cyber security
- PLC (Programmable Logic Controller)
A PLC is a ruggedised industrial computer that controls machines and production lines by driving outputs such as motors, valves and relays according to inputs from sensors. Much of the data on a shop floor originates in PLCs, and SCADA, MES and monitoring systems read it using protocols such as Modbus or OPC UA. Even on older machines, reading from the PLC is often the quickest route to data. More: What is SCADA? · Service: SCADA and HMI
- Predictive maintenance
Predictive maintenance is an approach that continuously monitors machine condition data such as vibration, temperature and current with sensors, spots drift towards failure early and schedules maintenance when the machine actually needs it. Reactive maintenance waits for a breakdown and preventive maintenance follows a calendar; predictive maintenance reduces both unplanned downtime and unnecessary part replacement. More: Predictive maintenance guide · Service: Predictive maintenance
- Privacy notice (duty to inform)
The duty to inform requires a data controller, when collecting personal data, to tell the individual who it is, why the data is processed, to whom and why it may be transferred, how and on what legal basis it is collected, and what rights the person has. It needs no approval, only information, and applies to every processing activity whether or not explicit consent is also needed. More: Explicit consent vs privacy notice · Service: Data protection compliance
- Production traceability
Production traceability is the ability to show, from records, which raw material lots a product was made from, on which machine, in which shift, with which parameters, and which customer received it. A well-built system traces backwards to the supplier and forwards to the customer from a single lot number, narrowing any recall and keeping evidence ready for customer audits. More: Production traceability guide · Service: Production traceability and barcodes
- Progress payment (hakediş)
A progress payment (hakediş in Turkish) is the amount due for work completed on a construction or contracting project in a given period, calculated from measured quantities, unit rates, price adjustments and deductions. Tracking it in one chain of records produces both the client's claim and the subcontractor's payment from the same data, so project managers see progress before month end and disputes rest on documents. More: Construction progress payment tracking · Service: Construction and contracting
- Prompt
A prompt is the instruction and context that tells a language model what we want it to do: the task, audience, tone, source documents and output format. The same model can give consistent, usable results with a well-written prompt and generic or wrong text with a vague one. In companies, frequently used prompts should become approved templates. More: AI email writing for business · Service: Enterprise LLM assistant
- Prompt injection
Prompt injection is an attack in which instructions hidden in text given to a language model divert it from its intended task. The instruction may come directly from a user or be embedded in an email, document or web page the model reads. It cannot be fully prevented; it is managed by narrowing the assistant's permissions, treating external content as data and requiring human approval for critical actions. More: Prompt injection · Service: Cyber security
- Proof of concept (PoC)
A proof of concept (PoC) is a quick test that checks, on a small data sample, whether an AI idea works technically. Unlike a pilot, it shows technical feasibility only, not real users working in a real workflow. A successful PoC does not guarantee production use; data quality, integration and business value still have to be proven separately. More: Why AI projects fail · Service: Digital transformation consultancy
- PTR record (reverse DNS)
A PTR record is a reverse DNS entry that maps an IP address back to a host name. Many receiving servers check whether the sending mail server's IP has a meaningful, consistent PTR record, and may treat mail from servers with a missing or mismatched one as suspicious. For organisations running their own mail server it is one of the basic deliverability settings. More: Emails going to spam: how to fix it · Service: Smart360
Q
- QR code visitor access
QR code visitor access lets a visitor enter with a QR code sent in advance and valid only for a set date, time window and set of doors. It removes the need to issue and collect cards at reception, and the code expires on its own when its validity ends. Visitor entries follow the same permission rules as staff and appear in the same reports. More: QR code visitor access · Service: SmartPass
R
- RAG (Retrieval-Augmented Generation)
RAG (retrieval-augmented generation) is a technique in which a language model first retrieves the relevant passage from your company's documents and then bases its answer only on that passage. The assistant answers from current procedures, cites its source and says it cannot find an answer rather than inventing one. Document access should follow each user's permissions. More: Retrieval augmented generation for the enterprise · Service: Enterprise LLM assistant
- Reactive power penalty
A reactive power penalty is a charge added to an electricity bill when the ratio of inductive or capacitive reactive energy drawn from the grid to active energy exceeds regulatory limits. It is usually caused by a faulty or undersized power factor correction panel and is often only noticed when the monthly bill arrives. Continuous monitoring of reactive ratios lets you prevent the penalty before the invoice lands. More: Reactive power penalty · Service: Energy monitoring and management
- Real-time reporting
Real-time reporting is reporting in which the relevant indicator updates, and raises an alert if needed, within seconds or a few minutes of an event. Not every report needs to be live: events that demand immediate action, such as a machine stoppage, a stock threshold or a delayed shipment, need live data, while monthly profitability does not. Drawing that line correctly sets the infrastructure cost. More: Real-time reporting · Service: BI dashboard
- Request for proposal (RFP)
A request for proposal (RFP) is a document in which a buyer describes its needs, technical requirements and evaluation criteria and asks suppliers for written proposals. Responding means reading the specification, matching each question and adapting standard text. AI can speed up this reading and drafting, while pricing, commitments and exceptions should stay with people. More: AI proposal writing · Service: Enterprise LLM assistant
- Retrofitting (legacy machines)
Retrofitting is a way of getting run, stop, count and status data from an older machine without replacing it, either by fitting external current sensors, part counters, vibration or temperature sensors, or by reading directly from its PLC where one exists. Because it does not interfere with the machine's own control system, it offers a low-risk start to Industry 4.0 in a mixed machine park. More: Retrofitting legacy machines · Service: Remote monitoring
- RFID (Radio-Frequency Identification)
RFID (Radio-Frequency Identification) is a technology that reads a chip in a card or tag by radio waves, without physical contact. Access cards commonly use 125 kHz or 13.56 MHz; 13.56 MHz cards can support encryption and are therefore harder to copy. The choice of card directly sets the security level of the whole system. More: 125 kHz vs 13.56 MHz RFID cards · Service: Card access control
- RFID tag
An RFID tag is an identification label made of a chip and an antenna that a reader can read by radio signal, without line of sight. Tags are classified by frequency (LF, HF, UHF), power source (passive, battery-assisted passive, active) and form factor. Unlike barcodes, RFID can read a whole shelf or room in one pass; the right tag depends on read range, surface and environment. More: RFID tag types: UHF and HF · Service: Industrial data terminals
- Root cause analysis
Root cause analysis is a method for finding the real source of a defect, stoppage or quality problem rather than its visible symptom. In manufacturing, machine, batch, shift, raw material and quality records are joined on a common time and work order axis; the aim is not to guess but to say "this defect only occurs when these conditions coincide". That requires data that can be linked. More: Manufacturing data analytics for root cause · Service: MES production management
- RPA (Robotic Process Automation)
RPA is the use of software bots to carry out rule-based, repetitive computer tasks, such as copying data, filling in forms, moving files and preparing reports, through the same screens a person would use. It works best where rules are clear, volumes are high and inputs are digital, and it offers a quick route to automation when existing systems have no API. More: RPA explained · Service: RPA process automation
S
- SaaS (Software as a Service)
SaaS is a software model in which the application runs on the provider's servers and customers use it over the internet on a subscription. The provider handles servers, updates and infrastructure backups; with on-premise software the system sits on the organisation's own servers, which brings both control and the operating burden. The choice should rest on data location, integration, customisation and total cost of ownership. More: SaaS vs on-premise
- SAML
SAML (Security Assertion Markup Language) is a standard, widely used for enterprise single sign-on, in which an identity provider authenticates the user and passes that result to an application in a signed XML assertion. It is favoured for web-based business applications, while mobile and modern API-based applications typically use OpenID Connect (OIDC) instead. More: SAML vs OIDC for SSO · Service: System integrations
- SCADA (Supervisory Control and Data Acquisition)
SCADA is the software layer that collects data from PLCs, RTUs and field sensors so operators can monitor a process from one screen, receive alarms and send commands when needed. It shows pressure, temperature or flow in real time, stores the history and alerts the right person when a limit is exceeded. With Digital Bridge's bespoke SCADA, the customer owns the source code. More: What is SCADA? · Service: SCADA and HMI
- Scope 1, 2 and 3 emissions
Scope 1, 2 and 3 are the GHG Protocol categories that split a company's greenhouse gas emissions by source: Scope 1 covers direct emissions from fuel burned on site and from processes, Scope 2 purchased electricity and heat, and Scope 3 all other indirect emissions across the value chain, from supply to the product's end of life. Carbon footprint reporting and customer requests rely on this split. More: Scope 1, 2 and 3 emissions in manufacturing · Service: Energy monitoring and management
- Self-service analytics
Self-service analytics is when business teams such as sales, finance or production build the reports they need themselves, from prepared and certified datasets, without raising a request with IT or an analyst. It shortens the report queue. Success depends on a framework rather than freedom: shared metric definitions, role-based access and rules on which reports count as official. More: Self-service analytics governance · Service: BI dashboard
- Self-service kiosk
A self-service kiosk is a touchscreen terminal that lets customers or citizens complete routine counter tasks themselves, such as taking a queue ticket, paying a bill, buying a ticket, registering as a visitor or placing an order, without staff. It is more than a screen: payment readers, printers, ID or QR scanners and integration with back-end systems all need to be planned together. More: Self-service kiosk guide · Service: Kiosk terminals
- Semantic layer
A semantic layer defines, once and in one place, what business terms such as "net sales" or "active customer" mean in the underlying data tables. Reporting tools and AI assistants calculate according to these definitions, so different departments get the same figure for the same question. Reliable natural language querying also depends on it. More: Self-service analytics governance · Service: BI dashboard
- Shadow AI
Shadow AI is the use by employees of AI tools the company has not approved, often through personal accounts and on work data. Customer details, contracts or personal data can end up on third-party servers without any control. The fix is less about banning and more about offering an approved tool, writing a usage policy and training staff. More: ChatGPT and company data security · Service: Data protection compliance
A shared mailbox is an email inbox set up for a department or function, such as accounts@, sales@ or support@, which several employees access with their own accounts. No password needs to be shared, and it is possible to see who read, answered or deleted each message. When someone leaves, the correspondence history stays with the organisation and customer contact is not interrupted. More: Shared mailbox management · Service: Smart360
- SIEM (Security information and event management)
SIEM (security information and event management) is a security system that centrally collects and correlates logs from servers, firewalls, endpoints and applications, raises alerts on suspicious activity and supports after-the-fact investigation. It exposes attack traces that would go unnoticed in scattered logs, but delivers little value unless its rules are tuned and its alerts are actually watched. More: SIEM and log management basics · Service: Cyber security
- Speaker diarisation
Speaker diarisation is the speech recognition step that works out which parts of an audio recording belong to which speaker. In meeting minutes, call centre analysis and interview recordings it shows who said what and who committed to which action. Its accuracy depends on the microphone setup, overlapping speech and background noise. More: Turkish speech to text for business · Service: Voice recognition
- Speech to text
Speech to text is technology that uses AI to convert the words in an audio recording or live conversation into written text. In business it turns spoken information from meetings, calls, site reports and dictation into a searchable record. For good results in Turkish, the microphone, background noise, industry vocabulary and data protection compliance matter as much as the choice of model. More: Turkish speech to text for business · Service: Voice recognition
- SPF (Sender Policy Framework)
SPF (Sender Policy Framework) is an email authentication standard in which a domain publishes, in a DNS TXT record, which servers are allowed to send mail on its behalf. Receiving servers check whether an incoming message came from one of those servers. A missing or faulty SPF record pushes mail into spam folders and makes it easier to spoof your domain. More: SPF, DKIM and DMARC explained · Service: Smart360
- SSO (Single Sign-On)
SSO (Single Sign-On) is an authentication method that lets a user sign in once with a single identity and reach every business application they are authorised for without entering separate passwords. It reduces the number of passwords, applies security policies in one place and allows all of a leaver's access to be closed in a single step. More: Single sign-on (SSO) benefits · Service: Smart360
T
- Temperature mapping
Temperature mapping is the measurement of how temperature is distributed over time and space inside a warehouse, cold room or refrigerator, using many calibrated data loggers placed in a defined pattern. It reveals hot and cold spots, shows where permanent monitoring sensors should go and identifies areas where product should not be stored. In pharmaceutical storage it is a core piece of evidence for inspections. More: Pharmaceutical warehouse temperature mapping · Service: Cold chain monitoring
- Time and attendance system (PDKS)
A time and attendance system (known in Turkey as PDKS) automatically records when employees arrive and leave, using cards, fingerprints or QR codes, and compares those records with the shift plan to produce timesheets. Lateness, absence and overtime are then based on undisputed data, and payroll no longer needs manual reconciliation. More: Time and attendance system guide · Service: HR, payroll and personnel management
- Time series database
A time series database is a database designed to write timestamped measurements from sensors, meters and machines at high speed, store them compressed and query them quickly by time range. It handles natively the heavy write loads, automatic retention policies and time-based roll-ups that strain a relational database in IoT settings, so long-term analysis is possible without losing history. More: Time series database for IoT · Service: Remote monitoring
- Timesheet (puantaj)
A timesheet is a record showing how many hours each employee worked on each day of a period, together with leave, sick days, absences and overtime. It is the main input to payroll; errors lead both to overpayment and to disputes with staff. When it is generated automatically from entry and exit records, month-end closing becomes much faster. More: Timesheet and overtime calculation in Turkey · Service: HR, payroll and personnel management
- Turnstile
A turnstile is a mechanical or motorised barrier that lets only one person through for each valid read. Unlike a door, it physically makes tailgating difficult and keeps entry counts reliable. Types such as tripod, swing or sliding-wing and full-height turnstiles are chosen according to the security level, peak traffic and the need for accessible passage. More: Turnstile types guide · Service: Card access control
U
- Use case prioritisation matrix
A use case prioritisation matrix is a decision tool that scores candidate AI projects on criteria such as business value, data readiness, task fit, ease of integration and risk, then ranks them. It turns a long list of ideas into a small portfolio that shows which job to start with, and keeps budget away from the wrong use case. More: AI use case prioritisation · Service: Digital transformation consultancy
V
- Vector database
A vector database is a data store that holds text, images or audio as numeric arrays (vectors) representing their meaning, and quickly finds the records closest in meaning to a query. It searches by semantic similarity rather than keyword match, and it is usually the retrieval layer behind enterprise AI assistants. More: Vector database explained · Service: Enterprise LLM assistant
- VERBIS (Data Controllers' Registry Information System)
VERBIS is the online Data Controllers' Registry Information System through which organisations declare their personal data processing activities to Turkey's Personal Data Protection Authority. Businesses above the employee-count or balance-sheet thresholds set by the Board must register. The entries must match the personal data inventory exactly and be updated whenever processing changes. More: VERBIS registration guide · Service: Data protection compliance
- Vibration analysis
Vibration analysis is a method of detecting faults in rotating machinery before symptoms appear, by measuring the vibration signal and breaking it down into its frequencies. Imbalance, misalignment, looseness and bearing damage each leave a signature at a different frequency. With a sensor on the right point and regular trending, a fault can be fixed in a planned stop before it becomes unplanned downtime. More: Vibration analysis for fault detection · Service: Predictive maintenance
- Vulnerability scanning
Vulnerability scanning is a regular check that uses automated tools to detect known security weaknesses, missing patches and misconfigurations across systems. It covers more ground and runs more often than a penetration test, but does not show whether a weakness can actually be exploited. Findings must be prioritised by risk and closed through the patching process; scanning alone protects nothing. More: Vulnerability scanning vs penetration testing · Service: Cyber security
W
- Wave picking
Wave picking is a warehouse method in which orders are grouped by a rule and released for picking together in the same time window, rather than one by one. Waves are usually built around carrier departure times, delivery zones or product types. By aligning picking, packing and loading to the same schedule, it reduces waiting at the dock and missed shipments. More: Wave picking in the warehouse · Service: WMS
- WMS (Warehouse Management System)
A WMS is software that records exactly which shelf, lot and quantity every item occupies, scanning each movement from goods receipt to dispatch with a handheld terminal as it happens. ERP tells you how many units are in stock; a WMS tells you precisely where they are and which should leave first, reducing picking errors and count discrepancies. More: Warehouse management system guide · Service: WMS
Z
- Zero trust
Zero trust is a security model that does not trust any user, device or connection by default, whether inside or outside the network, and verifies every access request on the basis of identity, device health and context. Combined with the principle of least privilege, it limits how far a single compromised account can spread across the organisation. More: Zero trust security model for SMBs · Service: Cyber security
- Zone-based access control
Zone-based access control divides a site into zones such as the gatehouse, production, warehouse and offices, and allows each person or team into only the zones their work requires, at set times. Because permissions are managed by zone and role rather than door by door, changes are quick and less error-prone, and access to critical areas stays narrow. More: Zone-based access in factories · Service: SmartPass
Frequently Asked Questions
Which terms does this glossary cover?
Core concepts from access control and time attendance, business email and document management, cyber security and KVKK compliance, software development, Industry 4.0, IoT, artificial intelligence, data analytics and digital transformation. Every definition links to a related guide and service page.
How often are the definitions updated?
The glossary is updated together with the guides on our blog. When a new topic or regulatory change is published, the related term is added or its definition refreshed. For regulatory terms we always recommend checking the current official text as well.
How do we apply a term to our own project?
The guide linked under each definition explains the practical steps. To adapt it to your process, talk to the Digital Bridge team: after a needs analysis we send a written proposal covering scope, phases and cost.
Have a different question? Ask Us