Lesson 12 Acronyms Flashcards
IR
Incident Response
SOAR
Security Orchestration, Automation, and Response
CIRT
Computer Incident Response Team
CSIRT
Computer Security Incident Response Team
CERT
Computer Emergency Response Team
SOC
Security Operations Center
IRP
Incident Response Plan
TTPs
Tactics, Techniques, and Procedures
SOP
Standard Operating Procedure
LLR
Lessons Learned Report
AAR
After Action Report
SIEM
Security Information and Event Manager
ESI
Electronically Stored Information
EPP
Endpoint Protection Platform
EDR
Enhanced Detection and Response
XDR
Extended Detection and Response
RNA
Retrospective Network Analysis
MUA
Mail User Agent
MDA
Mail Delivery Agent
MTA
Mail Transfer Agent
ML
Machine Learning
IPFIX
IP Flow Information Export
IETF
Internet Engineering Task Force
OVAL
Open Vulnerability and Assessment Language