Skip to Content
The Cybersecurity Guide to Governance, Risk, and Compliance
book

The Cybersecurity Guide to Governance, Risk, and Compliance

by Jason Edwards, Griffin Weaver
May 2024
Intermediate to advanced
672 pages
22h 23m
English
Wiley
Content preview from The Cybersecurity Guide to Governance, Risk, and Compliance

CHAPTER 30Incident Response and Recovery

“Cybersecurity is not just about preventing incidents; it’s about how swiftly and effectively we respond when they occur. Like a well‐rehearsed symphony, incident response harmonizes expertise, coordination, and resilience to turn chaos into an opportunity for growth.”

Incident response and recovery are fundamental aspects of cybersecurity, involving meticulous planning, preparation, detection, analysis, containment, eradication, and recovery. The process begins with creating an incident response plan (IRP) and training personnel, then identifying and analyzing potential security incidents. The active response phase involves limiting the impact and eliminating the threat, leading to the recovery stage, which focuses on system restoration and preventive measure implementation. Effective communication throughout the stages is critical, ensuring informed actions from all parties involved.

PLANNING AND PREPAREDNESS

Incident response planning is the bedrock upon which effective cybersecurity management programs are built. The starting point for any effective response to a cybersecurity incident is a well‐articulated incident response policy. This policy is the guiding doctrine, setting the ground rules for how an organization responds to cyber threats. It forms the cornerstone of the company's stance on cybersecurity, clearly outlining its commitment to safeguarding its digital assets. It acts as the reference guide during an incident, ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Cybersecurity Risk Management

Cybersecurity Risk Management

Cynthia Brumfield, Brian Haugli

Publisher Resources

ISBN: 9781394250196Purchase Link