November 2018
Intermediate to advanced
382 pages
11h 20m
English
All potential IRT members should learn the incident response plan. The plan should be integrated into the organization with executive buy-in and oversight. Roles and responsibilities should be established, and exercises should be conducted that include engagement with third parties, such as CSPs.
Training should be provided, not only on the technical aspects of the systems being supported, but also on the business and mission objectives of the systems.
Regular exercises should be conducted to validate not only the plan, but the organization's efficiency and skill in executing it. These exercises will also help ensure that the incident response plan is kept up to date, and that the staff involved ...