Category Archives: Uncategorized
ISACA CISM – Domain 04 – Information Security Incident Management Part 9
50. Escalation Process for Effective IM So let’s take a look at the escalation process for effective, not incident messaging. Remember, we’re talking about incident managing. So what we basically when we think of escalation, that means things are going from incident to worse and we need to kind of look at that. And that… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 8
45. Lesson 8: Developing an Incident Response Plan Now, in this lesson, we’re going to talk about developing an Incident Response plan. So what we’ll do is we’ll talk about the elements of the IRP or incident Response plan, which will also include a discussion about gap analysis, the business impact analysis, an escalation process,… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 7
39. Management Metrics and Monitoring Part1 Managing also means we have to have measurements that we can respond to and make decisions about, right? I said it before, you can’t manage what you can’t measure. And so part of managing, again, is the metrics and monitoring. And now, I know we’ve talked about this many… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 6
31. Audits Now, don’t be afraid of audits. Audits are an important aspect of what we should be doing. And by the way, I look at audits as being proactive. Now, again, we can do internal audits where we have our inhouse experts, people that work for the organization that try to go past the… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 5
27. Personnel All right, let’s take a look at the personnel for our incident management team. So I’ll call that the IMT. As you can see it down here. So here’s the thing. This shouldn’t be a temporary position. If we’re going to have a management team, those members, as I said, should be permanent… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 4
20. Responsibilities Part1 When we talk about responsibilities, there’s usually, I guess you could say, a number of incident management responsibilities that we have to undertake and one of those and again the security manager might be tasked with having to get this set up. But one of them starts off with just saying that… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 3
12. Outcomes of Incident Management So we have some outcomes that we want from incident management. Now when we do talk about incident management that as a term includes having this incident response and that’s an important part of that. The incident response is really in many ways a variety of activities that we want… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 2
7. Goals of Incident Management Part2 I hope in many ways. I’ve already talked about the goals then of incident management. And a part of the goal. And this is, by the way, going to be coming from your business impact assessment or analysis, from your risk assessment or analysis studies that you do, is… Read More »
ISACA CISM – Domain 04 – Information Security Incident Management Part 1
1. Lesson 1: Incident Management Overview Part1 Now in this domain, we’re going to take a look at the information security incident management. And what we’re going to do is we’re going to talk a lot about the different parts of incident management. First as an overview of what it is, it’s organization, the resources… Read More »
CompTIA Network+ N10-008 – Module: Examining Best Practices for Network Administration Part 6
12. 16.11 Documentation In this video, let’s discuss some of the different documentation that we should maintain. First up is a privileged user agreement. This says what users are, specifically, what positions that those users hold, what permissions do they have, can they view something? Can they modify something? Can they not view something? These… Read More »