Rationale for Using an Incident Response Methodology

Is it important to use an incident response methodology? Both of this book’s authors, longtime veterans of the incident response arena, are confident that the answer is a resounding “yes.” Reasons are discussed in the following sections.

Structure and Organization

It would be nice if security-related incidents generally occurred in a slow and orderly fashion. In this hypothetical scenario, staff charged with the responsibility of dealing with such incidents would have the luxury of being able to “dabble” with the incidents, turning their attention to events at hand as their whims dictated. Anyone who has been involved with security-related incidents, however, knows that in real world, dealing ...

Get Incident Response: A Strategic Guide to Handling System and Network Security Breaches now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.