Site icon LIFARS, a SecurityScorecard company

Building A CSIRT: Incident Management Frameworks

Building A CSIRT Incident Management Frameworks

Building A CSIRT Incident Management Frameworks

 

Building an effective Computer Security Incident Response Team (CSIRT) requires more than just the right people, but also the correct structure. When building and maintaining an Incident Response Team a set of regulations and frameworks should be followed. Frameworks give guidance and a methodology for building an incident response team with an organization. Fortunately, there are multiple frameworks available as resources to establishing a productive Incident Response Team. Below is a list of incident management frameworks available.

  1. ISO/IEC 27035-1:2016: Information Security Incident Management
  1. SANS: Creating and Managing an Incident Response Team
  1. RFC 2350: Expectations for Computer Security Incident Response
  1. CERT: Handbook for Computer Security Incident Response Teams (CSIRTs)
  1. NIST 800-61: Computer Security Incident Handling Guide

6. ENISA: CSIRT Setting up Guide

  1. ENISA: Good Practice Guide for Incident Management
  1. ISACA: Incident Management and Response
  1. ISACA: Responding to Targeted Cyberattacks

These frameworks are great tools to follow for any CSIRT and can assist in guiding your organization effectively. The list of frameworks above are all unique and are useful in their own ways.

 

 

LIFARS Incident Response Team

Exit mobile version