Managing Incidents

The actual management of incidents is covered throughout this book. There are, however, some issues that should be addressed early in the organization phase of the team’s life cycle.

Obviously, the first step in managing and responding to an incident is to assemble the team. This might be either physical or virtual. Ideally, a core team can meet quickly in person and discuss the incident. It can then either meet with or call the affected persons and gather information quickly to formulate a response strategy.

Chapter 1,“An Introduction to Incident Response,” defines incident response as the “actions taken to deal with an incident that occurs. These actions normally represent some form of intervention to negate or minimize ...

Get Incident Response: A Strategic Guide to Handling System and Network Security Breaches now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.