Book description
Using a well-conceived incident response plan in the aftermath of an online security breach enables your team to identify attackers and learn how they operate. But, only when you approach incident response with a cyber threat intelligence mindset will you truly understand the value of that information. With this practical guide, you’ll learn the fundamentals of intelligence analysis, as well as the best ways to incorporate these techniques into your incident response process.
Each method reinforces the other: threat intelligence supports and augments incident response, while incident response generates useful threat intelligence. This book helps incident managers, malware analysts, reverse engineers, digital forensics specialists, and intelligence analysts understand, implement, and benefit from this relationship.
In three parts, this in-depth book includes:
- The fundamentals: get an introduction to cyber threat intelligence, the intelligence process, the incident-response process, and how they all work together
- Practical application: walk through the intelligence-driven incident response (IDIR) process using the F3EAD process—Find, Fix Finish, Exploit, Analyze, and Disseminate
- The way forward: explore big-picture aspects of IDIR that go beyond individual incident-response investigations, including intelligence team building
Publisher resources
Table of contents
- Foreword
- Preface
- I. The Fundamentals
- 1. Introduction
- 2. Basics of Intelligence
- 3. Basics of Incident Response
- II. Practical Application
- 4. Find
- 5. Fix
- 6. Finish
- 7. Exploit
- 8. Analyze
- 9. Disseminate
- III. The Way Forward
- 10. Strategic Intelligence
- 11. Building an Intelligence Program
- A. Intelligence Products
- Index
Product information
- Title: Intelligence-Driven Incident Response
- Author(s):
- Release date: August 2017
- Publisher(s): O'Reilly Media, Inc.
- ISBN: 9781491934944
You might also like
book
Cybersecurity Blue Team Toolkit
A practical handbook to cybersecurity for both tech and non-tech professionals As reports of major data …
book
Hacking the Hacker
Meet the world's top ethical hackers and explore the tools of the trade Hacking the Hacker …
book
The Practice of Network Security Monitoring
The Practice of Network Security Monitoring teaches IT and security staff how to leverage powerful tools …
book
Hands-On Security in DevOps
Protect your organization's security at all levels by introducing the latest strategies for securing DevOps Key …