DiscoverTLP - The Digital Forensics PodcastEpisode 3 - (Part 2) NIST SP 800-61 Computer Security Incident Handling Guide (Detection)
Episode 3 - (Part 2) NIST SP 800-61 Computer Security Incident Handling Guide (Detection)

Episode 3 - (Part 2) NIST SP 800-61 Computer Security Incident Handling Guide (Detection)

Update: 2024-05-31
Share

Description

Send us a text

In this conclusion of the Detection phase, Clint wraps up Incident Prioritisation. This includes Functional impacts of the incident, information impact of the incident and the recoverability of the incident.

Not all of these are needed, or relevant when tracking your incident and Clint explains when to categorise incidents using these factors.

To finish off, Clint discusses incident notification - Who are the stakeholders that need to be informed and included in your incident response process, and how will they be notified?

Auscert: www.auscert.org.au

Comments 
In Channel
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Episode 3 - (Part 2) NIST SP 800-61 Computer Security Incident Handling Guide (Detection)

Episode 3 - (Part 2) NIST SP 800-61 Computer Security Incident Handling Guide (Detection)

Clint Marsden