Resources
Location:

Handbook for Computer Security Incident Response Teams (CSIRTs), 2nd edition

Title:Handbook for Computer Security Incident Response Teams (CSIRTs), 2nd edition (ID: CSD3847)
Author(s):Georgia Killcrece (Carnegie Mellon University), Robin Ruefle (Carnegie Mellon University) and Mark Zajicek (Carnegie Mellon University)
Topics:Cybersecurity, Incident Handling and Response, Security Management, Security Planning
Source:Carnegie Mellon Software Engineering Institute
Origin:Community Contributions (2003)
Type:Articles, Papers, and Reports
Abstract:This document provides guidance on forming and operating a computer security incident response team (CSIRT). In particular, it helps an organization to define and document the nature and scope of a computer security incident handling service, which is the core service of a CSIRT. The document explains the functions that make up the service; how those functions interrelate; and the tools, procedures, and roles necessary to implement the service. This document also describes how CSIRTs interact with other organizations and how to handle sensitive information. In addition, operational and technical issues are covered, such as equipment, security, and staffing considerations.
View this resource:

 
© Copyright 1999-2009 EDUCAUSE