Computer Incident Response Framework
Zachery Mitcham – UNC-Wilmington (10.Nov.2010 at 11:45)
Talk at UNC CAUSE 2010 (English - US)
Would you know how to respond if a distributed denial of service attack was launched against your network and successfully shut it down? What if your databases were compromised and personal identifying information, or other sensitive data was breached? What would be the consequences if your website was disabled or defaced and users couldn’t access your site-or couldn’t trust that the information on the site was accurate? Would you know what to do? These are real incidents that can happen and not just what ifs.
Symantec reported that 75% of enterprises that they surveyed reported experiencing some form of cyber attack in 2009; the FBI reported $600 million in 2009 in various losses were attributed to cyber crime.
Universities must be able to recognize a computer security incident and respond to them appropriately in order to minimize the damage that they can cause and help prevent future occurences. This proposal will provide best practices for developing and implementing strategies for effective incident response. Topics for discussion will include:
* Global Threats
* Incident Response Policy development
* Importance of having an incident response plan
* Incident Response Plan Components
* Common pitfalls in incident planning and preparation
* How to pre-plan for the imminent incident:
- Forensic Data Sources
- Incident Documentation and Log Retention
- Forensic Preservation
- First Responders
Quicklink: https://joind.in/2038
Track(s): Security and Compliance
By clicking this button you are declaring that you are the speaker responsible for it and a claim request will be sent to the administrator of the event.
If the claim is approved you will be able to edit the information for this talk.
Are you sure?




12.Nov.2010 at 14:50 by Margaret Umphrey
Great presentation that addressed the campuses' need to have an established protocol for incident response. Enjoyed the audience interaction and comments.