Incident Responses

0.0(0)
studied byStudied by 0 people
GameKnowt Play
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/6

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

7 Terms

1
New cards

Security Incidents

  • Malware

  • DDOS

  • Info Stolen

2
New cards

NIST SP800-61

Computer Security Incident Guide

3
New cards

Prep for incident

  • Communicating

  • Incident handling software & hardware

  • Analysis resources

  • Mitigation software

  • Policies for handling

4
New cards

Analysis

  • Logs

  • Exploit Announcements

  • Direct Threats

  • Alerts/Reports

  • Detect config changes

  • Large network traffic

5
New cards

Sanboxes

Isolated OS

6
New cards

Recovery after Incident

  • Remove bugs

  • Recover System (BackUps)

7
New cards

Reflecting after incident

Post-Incident Meeting