How To Design A Useful Incident Response Policy ?

Share It On:

Organizations should be prepared to detect and respond to incidents before they occur. This plan should be embodied in an accident response policy. For example, The Carnegie Mellon University CERT Coordination Center (CERT/CC) recommends the following incident response practices. Prepare the establish policies and procedure for responding to intrusions. Prepare to return to interventions.

Analyze all available information to characterize an intrusion. Communication with all parties that need to be made aware of an intervention and its progress collect and protect information associated with interference. Apply short term solutions to contain an invasion. Eliminate all means of intruder access — return systems to normal operation. For the followup, To identify and implement security lessons learned. The original guidance on incident handling is provided by the Internet Engineering Task Force (IETF) RFC 2196.

These are the approaches; Preparing and Planning (What are the goals and objectives in handling an incident ?), Notification (Who should be contacted in the case of an event?) by the help of Local managers and personnel, Law enforcement and investigative agencies, Computer security incidents handling teams, Affected and involved sites, Internal Communications, Public relations and press releases. Identifying an episode (Is it an incident and if so, how serious is it ?).

Handling (what should be done when an incident occurs?). Notification (What should be done when an event occurs?): Notification (Who should be notified about the incident ?), Protecting evidence and activity logs (What records should be kept from before, during and after the event?),. Containment (How can the damage be limited?). Eradication (How can you eliminate the reasons for the incident?),. Recovery (How do you reestablish service and systems?). Follow up (What actions should be taken after the event?). Aftermath (What are the implications of past incidents ?)

Administrative response to incidents. Responding to events efficiently and effectively is extremely important. The following critical issues are involved. They are protecting the assets that could be compromised — protecting resources that could be utilized more profitably if an incident didn’t require their services.

Complying with (government or other) regulations. Preventing the use of your system in attacks against other systems (which could cause you to incur legal liability) and Minimizing the potential for harmful exposure.


Share It On:

Recent Posts

Bangladesh Tightens Solvency Margin Calculations to Improve Insurance Sector Transparency

Bangladesh Tightens Solvency Margin Calculations to Improve Insurance Sector Transparency

Share It On: 23rd November 2024, Kahmandu Bangladesh’s insurance regulator has implemented stricter guidelines for calculating solvency margins for both

NRB’s NPR 6.8 Billion Investment: Strengthening Nepal’s Financial Future and Banking Stability

NRB’s NPR 6.8 Billion Investment: Strengthening Nepal’s Financial Future and

Share It On:23rd November 2024, Kathmandu Nepal’s Central Bank, Nepal Rastra Bank (NRB), has announced a significant investment of NPR

Nepal’s ADB Prioritizes Farmers’ Welfare for Economic Growth and Agricultural Development

Nepal’s ADB Prioritizes Farmers’ Welfare for Economic Growth and Agricultural

Share It On: 23rd November 2024, Kathmandu The Agricultural Development Bank (ADB) is recognized as a vital institution for Nepal’s

Ridi Power’s 23rd AGM Concludes: Key Decisions, Investments, and Future Outlook

Ridi Power’s 23rd AGM Concludes: Key Decisions, Investments, and Future

Share It On: 23rd November 2024, Kathmandu Ridi Power Company Limited wrapped up its annual shareholder meeting, the 23rd Annual

Nepal Oman Financial Ties Strengthen: Omani Rial Now Legal Tender In Nepal

Nepal Oman Financial Ties Strengthen: Omani Rial Now Legal Tender

Share It On: 22nd November 2024, Kathmandu A significant step has been taken towards strengthening financial ties between Nepal and

Liberty Energy Rights Shares Offering: Eligibility, Application Process, and Future Plans

Liberty Energy Rights Shares Offering: Eligibility, Application Process, and Future

Share It On:22nd November 2024, Kathmandu Liberty Energy Company Limited is gearing up to issue rights shares starting December 1,