Prerequisites for building a computer security incident response capability

被引:0
|
作者
Mooi, Roderick [1 ,2 ]
Botha, Reinhardt A. [2 ]
机构
[1] CSIR, Meraka Inst, New Delhi, India
[2] Nelson Mandela Metropolitan Univ, Sch ICT, Ctr Res Informat & Comp Secur, Port Elizabeth, South Africa
关键词
incident response; security team; CSIRT; CERT; establishing requirements;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
There are a number of considerations before one can commence with establishing a Computer Security Incident Response Team (CSIRT). This paper presents the results of a structured literature review investigating the business requirements for establishing a CSIRT. That is, the paper identifies those things that must be in place prior to commencing with the actual establishment process. These include characterising the CSIRT environment, funding, constituency, authority and legal considerations. Firstly, we identified authoritative CSIRT literature. Thereafter we identified salient aspects using a concept matrix. The study enumerates five areas of primary business requirements. Finally, a holistic view of the business requirements is provided by summarising the decisions required in each area.
引用
收藏
页数:8
相关论文
共 50 条
  • [21] Healthcare Security Incident Response Strategy-A Proactive Incident Response (IR) Procedure
    He, Ying
    Maglaras, Leandros
    Aliyu, Aliyu
    Luo, Cunjin
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [22] Security incident response: rethinking risk management
    Alberts, C
    Dorofee, A
    CARS 2004: COMPUTER ASSISTED RADIOLOGY AND SURGERY, PROCEEDINGS, 2004, 1268 : 141 - 146
  • [23] Meeting the global challenges of security incident response
    Masurkar, V
    Fischer-Hübner, S
    Swimmer, M
    SECURITY AND PROTECTION IN INFORMATION PROCESSING SYSTEMS, 2004, 147 : 101 - 117
  • [24] Cyber security, intrusion detection and incident response
    Nuñez, Eduardo Arriols
    Euroheat and Power (English Edition), 2017, 14 (04): : 34 - 35
  • [25] The importance of practice for cyber security incident response
    Moore G.
    Network Security, 2023, 2023 (10)
  • [26] Security Incident Response Automation for xPON Networks
    Oujezsky, Vaclav
    Horvath, Tomas
    Holik, Martin
    JOURNAL OF COMMUNICATIONS SOFTWARE AND SYSTEMS, 2022, 18 (02) : 144 - 152
  • [27] Build a cyber security incident response plan
    Staggs, Kevin
    CONTROL ENGINEERING, 2009, 56 (12) : 56 - 56
  • [28] Aligning disaster recovery and security incident response
    Schultz, E
    COMPUTERS & SECURITY, 2005, 24 (07) : 505 - 506
  • [29] Building an Active Computer Security Ethics Community
    Dittrich, David
    Bailey, Michael
    Dietrich, Sven
    IEEE SECURITY & PRIVACY, 2011, 9 (04) : 32 - 40
  • [30] Security Incident Response Criteria: A Practitioner's Perspective
    Grispos, George
    Glisson, William Bradley
    Storer, Tim
    AMCIS 2015 PROCEEDINGS, 2015,