null
US
Sign In
Sign Up for Free
Sign Up
We have detected that Javascript is not enabled in your browser. The dynamic nature of our site means that Javascript must be enabled to function properly. Please read our
terms and conditions
for more information.
Next up
Copy and Edit
You need to log in to complete this action!
Register for Free
34797731
Incident Response
Description
Having the right processes in place to respond quickly and effectively makes the difference between minor incidents and major disasters...
No tags specified
incident#response#cybersecurity#cisco
cyber security essentials
1
Mind Map by
Hisham Haneefa
, updated more than 1 year ago
More
Less
Created by
Hisham Haneefa
almost 3 years ago
11
0
0
Resource summary
Incident Response
Incident Phase
Preparation
CSIRT
Annotations:
* Establish and maintains the incident response plan * Make sure the team members understand the plan Test the plan Get management approve to the plan
Detection And Analysis
Incident Analysis
Containment, Eradication, Recovery
Containment: Isolate the infected system
Eradication: Eradicate the system
Recovery: After remedition recover all the system
Post-Incident Follow up
Disaster Recovery
Types
Natural Disasters
Human- Caused
Disaster Recovery Plans(DRP)
Disaster Recovery Controls
Preventing Controls
Detective Controls
Corrective Controls
Test/Trainings
Table Top
Functional test
Operational
Business Cont Plan
Business Cont Planning
RTO - Recovery Time Objective
RPO - Recovery Point Objective
MTTR- Mean TIme To Repair
Mean Time Between Failures
Business Cont Considarations
Digital Forensics
Evidence
Identifying and acquiring
Data Acquisition
System Images
Network Traffic and logs
Surveillance Videos
Hashes Or Checksums
photos of scene
Witness interveiwed
Protecting and Storing
Chain Of Custody
Digital Forensic Devices
leave in the current power state
Disconnect from Network
Refrain from opening file or applications
Order Of volatility
CPU storage
Process and Routing tables
Kernel Operations
System Storage
Temp Files
Fixed media
Removable devices
Tape/DVD/Paper
Show full summary
Hide full summary
Want to create your own
Mind Maps
for
free
with GoConqr?
Learn more
.
Similar
2.4 Incident Respone and Recovery Procedures
DJ Perrone
Security+ Incident Response Steps and Tools
Lyndsay Badding
OCR AS Biology - Lipids
Chris Osmundse
Kwasi Enin - College Application Essay
philip.ellis
CHEMISTRY C1 6
x_clairey_x
French -> small but important words for GCSE
georgie_hill
How to Develop the Time Management Skills Essential to Succeeding in IB Courses
nina.stuer14
Macbeth - Charcters
a.agagon
What are they doing?
Tamara Urzhumova
NSI Course
Yuvraj Sunar
Data Protection Act 1998
Carina Storm
Browse Library