Incident Response (IR) Revamp

User Generated

Nyrkqnqba44

Business Finance

Description

Imagine you have just taken over the manager position for your organization’s incident response team, after coming from another division in the company. Your first realization is that proper procedures, best practices, and sound technologies are not being utilized. You decide to revamp the team’s efforts.

Write a two to three (2-3) page paper in which you:

  1. Explicate the main efforts that would be included in the incident response efforts, including but not limited to personnel and team structure, tools and utilities, and proper procedures.
  2. Discuss in detail the role that an IDS / IPS would play in the IR efforts, and explain how these systems can assist in the event notification, determination, and escalation processes.
  3. Explain how the NIST SP800-61, Rev. 1 could assist the personnel in classifying incidents so each is identified appropriately and the proper incident-handling procedures are taken.
  4. Explain how the use of log management systems (e.g., Splunk) could be a legitimate and useful component of the IR efforts, and describe the potential issues that could arise if not utilized.5.Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Your assignment must follow these formatting requirements:

  • Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format. Check with your professor for any additional instructions.
  • Include a cover page containing the title of the assignment, the student’s name, the professor’s name, the course title, and the date. The cover page and the reference page are not included in the required assignment page length.

User generated content is uploaded by users for the purposes of learning and should be used following Studypool's honor code & terms of service.

Explanation & Answer

Attached.

Incident Response- Outline
Thesis Statement: The proper procedures, structures, technologies, and teams required in an
institution play a great role of disaster aversion and control in the event of the different incidents.
I. Introduction
II. Putting the team in place
III. IDS/IPS
IV. NIST SP800-61, Rev. 1
V. Log management systems
VI. Conclusion


Incident Response- Outline
Thesis Statement: The proper procedures, structures, technologies, and teams required in an
institution play a great role of disaster aversion and control in the event of the different incidents.
I. Introduction
II. Putting the team in place
III. IDS/IPS
IV. NIST SP800-61, Rev. 1
V. Log management systems
VI. Conclusion

Attached.

Running head: INCIDENT RESPONSE

1

Incident Response
Name
Professor
Course
Date

INCIDENT RESPONSE

2
Incident Response

Incident response teams are of great importance in any institution. Their preparation and
response to emergency incidents are critical as it serves a significant role in disaster aversion and
control. The roles of the teams are to train and respond to specific events such as fire, floods,
disease outbreaks and terrorist attacks. The size of the incident dictates the team members
needed for each particular event. Small incidents usually requir...


Anonymous
Really useful study material!

Studypool
4.7
Trustpilot
4.5
Sitejabber
4.4

Similar Content

Related Tags