How to Respond to Cybersecurity Incidents: Exploring the NIST and SANS Incident Response Models

preview_player
Показать описание
NIST's Incident Handling Model and SANS' PICERL Incident Response Model outline best practices when responding to active cybersecurity threats. In this edition of #TechTalkTuesday, we discuss each model and important considerations for incident responders at each phase.

Please like and subscribe to support our channel!

Chapters:
00:00 - Intro
00:23 - Overview of NIST's Cyber Security Incident Handling Model
02:57 - Overview of SANS' PICERL Incident Response Model
03:46 - Incident Response Preparation Phase
07:30 - Incident Response Identification, Detection, and Analysis Phase
10:35 - Incident Response Containment, Eradication, and Recovery Phase
13:13 - Incident Response Lessons Learned and Post-Incident Analysis
17:32 - Wrapping Up
Рекомендации по теме
Комментарии
Автор

Great video as a refresher for NIST and an introduction to SANS

gnricnam