Handbook for Computer Security Incident Response Teams (CSIRTs), 2nd edition
| Title: | Handbook for Computer Security Incident Response Teams (CSIRTs), 2nd edition (ID: CSD3847) | | Author(s): | Georgia Killcrece (Carnegie Mellon University), Robin Ruefle (Carnegie Mellon University) and Mark Zajicek (Carnegie Mellon University) | | Topics: | Cybersecurity, Incident Handling and Response, Security Management, Security Planning | | Source: | Carnegie Mellon Software Engineering Institute | | Origin: | Community Contributions (2003) | | Type: | Articles, Papers, and Reports | | Abstract: | This document provides guidance on forming and operating a computer security incident response team (CSIRT). In particular, it helps an organization to define and document the nature and scope of a computer security incident handling service, which is the core service of a CSIRT. The document explains the functions that make up the service; how those functions interrelate; and the tools, procedures, and roles necessary to implement the service. This document also describes how CSIRTs interact with other organizations and how to handle sensitive information. In addition, operational and technical issues are covered, such as equipment, security, and staffing considerations. | | View this resource: | |
|