null
US
Sign In
Sign Up for Free
Sign Up
We have detected that Javascript is not enabled in your browser. The dynamic nature of our site means that Javascript must be enabled to function properly. Please read our
terms and conditions
for more information.
Next up
Copy and Edit
You need to log in to complete this action!
Register for Free
34797731
Incident Response
Description
Having the right processes in place to respond quickly and effectively makes the difference between minor incidents and major disasters...
No tags specified
incident#response#cybersecurity#cisco
cyber security essentials
1
Mind Map by
Hisham Haneefa
, updated more than 1 year ago
More
Less
Created by
Hisham Haneefa
almost 3 years ago
11
0
0
Resource summary
Incident Response
Incident Phase
Preparation
CSIRT
Annotations:
* Establish and maintains the incident response plan * Make sure the team members understand the plan Test the plan Get management approve to the plan
Detection And Analysis
Incident Analysis
Containment, Eradication, Recovery
Containment: Isolate the infected system
Eradication: Eradicate the system
Recovery: After remedition recover all the system
Post-Incident Follow up
Disaster Recovery
Types
Natural Disasters
Human- Caused
Disaster Recovery Plans(DRP)
Disaster Recovery Controls
Preventing Controls
Detective Controls
Corrective Controls
Test/Trainings
Table Top
Functional test
Operational
Business Cont Plan
Business Cont Planning
RTO - Recovery Time Objective
RPO - Recovery Point Objective
MTTR- Mean TIme To Repair
Mean Time Between Failures
Business Cont Considarations
Digital Forensics
Evidence
Identifying and acquiring
Data Acquisition
System Images
Network Traffic and logs
Surveillance Videos
Hashes Or Checksums
photos of scene
Witness interveiwed
Protecting and Storing
Chain Of Custody
Digital Forensic Devices
leave in the current power state
Disconnect from Network
Refrain from opening file or applications
Order Of volatility
CPU storage
Process and Routing tables
Kernel Operations
System Storage
Temp Files
Fixed media
Removable devices
Tape/DVD/Paper
Show full summary
Hide full summary
Want to create your own
Mind Maps
for
free
with GoConqr?
Learn more
.
Similar
2.4 Incident Respone and Recovery Procedures
DJ Perrone
Security+ Incident Response Steps and Tools
Lyndsay Badding
Geography Quiz - Tectonics
oscartaylor
Biology AQA 3.1.3 Osmosis and Diffusion
evie.daines
Revision Time Table
jessica3008
Physics 2a - Motion, Energy and Electricity (Velocity and time distance graphs)
queenvicshirley
Chemistry 1
Peter Hoskins
Think Python
tsilvo2001
Language Analysis
Connie Theobald
Acute Abdomen
Eslam Ebrahim
lymphoma
maitha alyahyaee
Browse Library