White Papers

Address these eight concerns in your incident response policy

Overview Every organization should include an incident response policy as part of its overall business continuity plan. Here are the most important elements to focus on when you build your IRP.

You may not think you need an incident response policy (IRP). After all, you've locked down your organization's network, and you feel reasonably confident that it's well protected. But even the most secure networks need an IRP. If your organization has no established, coherent plan of action, it can easily make the wrong decisions both during and after a security incident. An IRP offers a cool-headed method for dealing with a hot issue.

Every network is unique, and the type of business your organization conducts on the Internet will influence the level of your response to a security incident. But although the specifics of an IRP will vary, you'll want to cover certain standard issues. Security expert Mike Mullins offers a list of key areas to focus on, including:

  • Defining partner agreements
  • Developing an incident team
  • Designing an internal communications plan

These recommendations, along with information available from sites such as the SANS InfoSec Reading Room, will make it easier to hammer out an IRP that prepares your organization to deal effectively with any incidents that threaten your network.

Join the discussion of this download.

Download White Paper

By downloading you agree to our Terms and Conditions. These include information regarding use of your personal data.

Publisher
TechRepublic
File Format
PDF
Date Published
May 17, 2006
Format
White Papers
Topics
Network Security, Security Management

Similiar White Papers

Use these Registry settings to help lock down Windows

Use these Registry settings to help lock down Windows

This sample chapter, taken from Microsoft Windows Registry Guide, Second Edition discusses how to use the registr

Publisher: TechRepublic  |  Tags: microsoft windows, network, windows server, windows xp, xp

Anonymous Proxy: A Growing Trend in Internet Abuse

Anonymous Proxy: A Growing Trend in Internet Abuse

Anonymous proxies are an unseen threat--a student's or employee's backdoor to malicious or productivity-sapping sites on

Publisher: Bloxx  |  Tags: database, third-generation, trend

Tivoli WebSEAL - Sizing and Capacity Planning

Tivoli WebSEAL - Sizing and Capacity Planning

WebSEAL is a component of Tivoli Access Manager for e-business that provides an authentication and authorization mechani

Publisher: IBM  |  Tags: authentication, network, os, password, server

Balancing Security Against Productivity

Balancing Security Against Productivity

What makes for great security? Is it about keeping the bad guys out or letting the good guys in? About defending atta

Publisher: Novell  |  Tags: management, security management

A Brief History of Network Security and the Need for Host Based Intrusion Detection

A Brief History of Network Security and the Need for Host Based Intrusion Detection

This paper describes the present state of information and network security with specific concentration on Host-based Int

Publisher: Tetrad Digital Integrity (TDI)  |  Tags: network, network security

TechRepublic White Papers

Build your own consulting contract using this sample form

Build your own consulting contract using this sample form

Both independent consultants and their clients benefit when they're working with a solid contract. Download this sample

Publisher: TechRepublic  |  Tags: html

Say 'no thanks' the right way with this sample rejection letter

Say 'no thanks' the right way with this sample rejection letter

It's a good practice to let job candidates know when they haven't gotten the job. Use this sample thanks-but-no-thanks l

Publisher: TechRepublic  |  Tags: html

Step by step: Configure a Windows Server 2003 VPN?Server side

Step by step: Configure a Windows Server 2003 VPN?Server side

Set up a Windows Server 2003-based PPTP virtual private network (VPN) with this step-by-step installation and configurat

Publisher: TechRepublic  |  Tags: authentication, html, network, server, vpn, windows server

Download this sample IT due diligence report template

Download this sample IT due diligence report template

Performing a technology due diligence is a good way to understand your client's technology and assess the financial impl

Publisher: TechRepublic  |  Tags: due diligence

Define project expectations with this criteria acceptance form

Define project expectations with this criteria acceptance form

Establishing acceptance criteria at the beginning of a project helps ensure that the results are well received. This sam

Publisher: TechRepublic  |  Tags: html