Information Security Incident Management ◾ 277
keep these items in old cyberevent bags so that when we need to go, it’s all packed
in one place. It’s important to also keep track of your tools because nefarious people
might want to disrupt you from completing your task. Figures 11.7 and 11.8 are
checklists to give you a quick initial incident-handling guide.
Summary of Event Severity
Determining the severity of an event can help you quickly determine if extra help
or a prolonged event is about to happen. e standard method used by the NIST
is a favorite because it determines current and future effects on the business. e
team that is properly equipped and has some idea of the problem they are about to
encounter is much more likely to succee ...