Post-Incident Activity Flashcards

Last Phase of Incident Response Plan

1
Q

Forensic Analysis

A

Forensic analysis - also called digital forensics; legal compliance guidelines; may involve data recovery

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Root Cause Analysis

A

Root cause analysis - defined by the NIST; a principle-based, system approach for the identification of underlying causes associated with a particular set of risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Lesson Learned

A

Lessons learned - often in the form of a report; typical format - issue; discussion; recommendation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What criteria do you need to consider in Forensic Analysis

A

Legal Compliance Guidelines - Digital forensics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What criteria do you need to consider in Root Cause Analysis

A

Defined by the NIST

“A Principle-based, systems approach for the identification of underlying cause associated with a particular set of risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What criteria do you need to consider in Lesson Learned

A

Often in the form of a formal report

Typical format
-issue
-discussion
-recommendation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly