Chapter 10: Overview of Information Security Incident Manager

In this chapter, we will provide an overview of information security incident management and understand the advantages of a structured and effective incident management process. In this chapter, CISM aspirants will be able to gain an understanding of different aspects of incident management.

The following topics will be covered in this chapter:

  • Incident management overview
  • Incident response procedure
  • Incident management metrics and indicators
  • The current state of the incident response capabilities
  • Developing an incident response plan

Let’s understand each of these topics in detail.

Incident management overview

Incident management is defined as the process of handling disruptive ...

Get Certified Information Security Manager Exam Prep Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.