3.3 Cyber Incident Response Flashcards

1
Q

which stakeholder in the incident response process communicates the importance of the incident response plan to all parts of the organization, creates agreements detailing the authority of the IR team to take over business systems if necessary, and creates decision systems for determining when key systems must be removed from the network?

A

upper management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

which stakeholder in the incident response process creates newsletters and other educational materials to be used in employee response training and coordinates with the legal team to prepare media responses and internal communications regarding incidents before they occur?

A

marketing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what are the FOUR main stakeholder groups for the incident response process?

A

HR, Legal, Marketing, Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

which stakeholder in the incident response process reviews the NDA to ensure legal support for incident response efforts, develops the wording of documents used to contact sites and organizations possibly affected by an incident that originated with your company’s software, hardware, or services, and assesses site liability for illegal computer activity?

A

Legal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

what is the role of law enforcement in the incident response process?

A

to assist the investigation and in some cases take over the investigation when a crime has been committed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

which stakeholder in the incident response process develops job descriptions for those persons who will be hired for positions involved in incident response and creates policies and procedures that support the removal of employees found to be engaging in improper or illegal activity?

A

HR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

what is the role of the technical IT staff in the incident response process?

A

to recognize, identify, and react to incidents, and to provide support in analyzing those incidents when an incident has occurred

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

what are the FOUR main purposes of the incident response communication process?

A

limit communication to trusted parties

disclosure based on regulatory/legislative requirements

prevent inadvertent release of information

use secure method of communication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly