Module 4 Flashcards

1
Q

Playbook

A

A manual that provides details about any operational action

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Incident Response Playbook Phases

A

Preparation

Detection and analysis

Containment

Eradication and recovery

Post incident activity

Coordination

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Preparation

A

Before incidents occur, mitigate potential impacts on the organization by documenting, establishing staffing, plans, and educating users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Detection and Analysis

A

Detect and analyze events by implementing defined processes and appropriate technology

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Containment

A

Prevent further damage and reduce immediate impact of incidents

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Eradication and Recovery

A

Completely remove artifacts of the incident so that an organization can return to normal operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Post-Incident Activity

A

Document incident, inform, organizational leadership, and apply lessons learned

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Coordination

A

Report incidents and share information throughout the response process, based on established standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly