100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Summary

Summary Incident Response Management

Rating
-
Sold
-
Pages
2
Uploaded on
16-10-2024
Written in
2022/2023

The Advanced Cybersecurity and Risk Management notes are from the University of Phoenix Advance Cybersecurity Certification course - these notes will assist you in understand different aspects and domains of Information Security. The notes will guide you through the process of understanding each domain to prepare you for future certification exams.

Show more Read less
Institution
Cyber Security Specialist
Course
Cyber Security Specialist








Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Cyber Security Specialist
Course
Cyber Security Specialist

Document information

Uploaded on
October 16, 2024
Number of pages
2
Written in
2022/2023
Type
Summary

Content preview

Information Security – Cybersecurity Notes
UoPX Advanced Cybersecurity Certification
Incident Response Management
Defining an Incident – any event should be considered an incident. A breach is when a bad actor
or unauthorized user gains access (physical or network) to an area that they are not allowed
access to.
An incident is any event that has a negative effect on the confidentiality, integrity, or availability
of an org's assets - ITIL defines it as an unplanned interruption to an IT service or a reduction in
the quality of an IT service.
Security incident refers to an incident that is the result of an attack or the result of malicious or
intentional actions.
Some policies include examples:
 Any attempted network intrusion
 Any attempted DoS attack
 Any detection of malicious software
 Any unauthorized access of data
 Any violation of security policies
Incident Response Steps
1. Detection
a. IDS/IPS
b. Anti-malware
c. Log scanning for predefined events
d. End user detection of an irregular activity
2. Response
a. Varies depending on the severity of the incident - CIRT (computer incident
response team)
b. Trained members to respond and investigate, assess damage, collect evidence,
reporting, and recovery
3. Mitigation
a. Goal is to limit the effect or scope of an incident
4. Reporting


1
$5.99
Get access to the full document:

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached

Get to know the seller
Seller avatar
jimb6056

Also available in package deal

Thumbnail
Package deal
Cybersecurity and Risk Management
-
30 2024
$ 179.70 More info

Get to know the seller

Seller avatar
jimb6056 (self)
View profile
Follow You need to be logged in order to follow users or courses
Sold
0
Member since
1 year
Number of followers
0
Documents
37
Last sold
-

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions