Skip to Content
Effective Incident Response Team, The
book

Effective Incident Response Team, The

by Julie Lucas, Brian Moeller
September 2003
Intermediate to advanced
336 pages
6h 59m
English
Addison-Wesley Professional

Overview

When an intruder, worm, virus, or automated attack succeeds in targeting a computer system, having specific controls and a response plan in place can greatly lessen losses. Accordingly, businesses are realizing that it is unwise to invest resources in preventing computer-related security incidents without equal consideration of how to detect and respond to such attacks and breaches.

The Effective Incident Response Team is the first complete guide to forming and managing a Computer Incident Response Team (CIRT). In this book, system and network administrators and managers will find comprehensive information on establishing a CIRT's focus and scope, complete with organizational and workflow strategies for maximizing available technical resources. The text is also a valuable resource for working teams, thanks to its many examples of day-to-day team operations, communications, forms, and legal references.

IT administrators and managers must be prepared for attacks on any platform, exploiting any vulnerability, at any time. The Effective Incident Response Team will guide readers through the critical decisions involved in forming a CIRT and serve as a valuable resource as the team evolves to meet the demands of ever-changing vulnerabilities.

Inside, readers will find information on:

  • Formulating reactive or preventative operational strategy

  • Forming, training, and marketing the CIRT

  • Selecting penetration-testing, intrusion-detection, network-monitoring, and forensics tools

  • Recognizing and responding to computer incidents and attacks, including unauthorized access, denial-of-service attacks, port scans, and viruses

  • Tracking, storing, and counting incident reports and assessing the cost of an incident

  • Working with law enforcement and the legal community

  • Benefiting from shared resources

  • Scrutinizing closed incidents to further prevention

  • Offering services such as user-awareness training, vulnerability and risk assessments, penetration testing, and architectural reviews

  • Communicating the CIRT's return on investment through management reporting



  • 0201761750B10062003

    Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
    and much more.

    Read now

    Unlock full access

    More than 5,000 organizations count on O’Reilly

    AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

    QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
    Julian F.
    Head of Cybersecurity
    QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
    Addison B.
    Field Engineer
    QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
    Amir M.
    Data Platform Tech Lead
    QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
    Mark W.
    Embedded Software Engineer

    You might also like

    Communicate with Teams More Effectively

    Communicate with Teams More Effectively

    Charles Humble
    What Successful Project Managers Do

    What Successful Project Managers Do

    W. Scott Cameron, Jeffrey S. Russell, Edward J. Hoffman, Alexander Laufer

    Publisher Resources

    ISBN: 0201761750Purchase book