Examples of an Incident Response Plan

The National Institute of Standards in Technology (NIST) has readily available resources that can guide you in building an incident response plan. Take the word of experts into account when building an effective incident response.

The NIST offers a few different models for building an incident response plan:
Central: A central body, such as a CSIRT, handles the incident response
Distributed: Multiple response teams are responsible for a location or affected systems
Coordinated: A central team/body conveys response plans to the affected teams

What model will work best for your business? Answering this fundamental question will help structure the rest of the incident response plan along with next steps. Once you choose a model, you can move onto defining incident response phases.

There are 4 incident response phases:
Preparation
Detection and Analysis
Containment, Eradication and Recovery
Post-Event Activity

Each step is important to the process, but preparation will win the day. The more prepared you are, the more you can limit the creep of a breach.

More Info: what can you do with an a+ certification

Comments

Popular posts from this blog

DDoS Attack Mean for My Security?

Profiling Hackers in the MITRE ATT&CK Navigator

The Importance of Post-Attack Analysis