Phases of an incident response playbook Flashcards

1
Q
  1. Preparation
A

Before incidents occur, mitigate potential impacts on the organization by documenting, establishing staffing plans, and educating users.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q
  1. Detection and analysis
A

Detect and analyze events by implementing defined processes and appropriate technology.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q
  1. Containment
A

Prevent further damage and reduce immediate impact of incidents.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q
  1. Eradication and recovery
A

Completely remove artifacts of the incident so that an organization can return to normal operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q
  1. Post-incident activity
A

Document the incident, inform organizational leadership, and apply lessons learned.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
  1. Coordination
A

Report incidents and share information throughout the response process, based on established standards.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly