Post-Incident Activity Flashcards
Last Phase of Incident Response Plan
Forensic Analysis
Forensic analysis - also called digital forensics; legal compliance guidelines; may involve data recovery
Root Cause Analysis
Root cause analysis - defined by the NIST; a principle-based, system approach for the identification of underlying causes associated with a particular set of risks
Lesson Learned
Lessons learned - often in the form of a report; typical format - issue; discussion; recommendation
What criteria do you need to consider in Forensic Analysis
Legal Compliance Guidelines - Digital forensics
What criteria do you need to consider in Root Cause Analysis
Defined by the NIST
“A Principle-based, systems approach for the identification of underlying cause associated with a particular set of risks
What criteria do you need to consider in Lesson Learned
Often in the form of a formal report
Typical format
-issue
-discussion
-recommendation