Assignment-incident response revamp

Assignment Help Basic Computer Science
Reference no: EM131260244

Assignment: Incident Response (IR) Revamp

Imagine you have just taken over the manager position for your organization's incident response team, after coming from another division in the company. Your first realization is that proper procedures, best practices, and sound technologies are not being utilized. You decide to revamp the team's efforts. 

Write a two to three (2-3) page paper in which you: 

  1. Explicate the main efforts that would be included in the incident response efforts, including but not limited to personnel and team structure, tools and utilities, and proper procedures. 
  2. Discuss in detail the role that an IDS / IPS would play in the IR efforts, and explain how these systems can assist in the event notification, determination, and escalation processes. 
  3. Explain how the NIST SP800-61, Rev. 1 could assist the personnel in classifying incidents so each is identified appropriately and the proper incident-handling procedures are taken. 
  4. Explain how the use of log management systems (e.g., Splunk) could be a legitimate and useful component of the IR efforts, and describe the potential issues that could arise if not utilized. 
  5. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.  

Your assignment must follow these formatting requirements: 

  • Be typed, double spaced, using Times New Roman font (size 12), with one-inch margins on all sides; citations and references must follow APA or school-specific format.
  • Include a cover page containing the title of the assignment. The cover page and the reference page are not included in the required assignment page length. 

The specific course learning outcomes associated with this assignment are: 

  • Summarize the various types of disasters, response and recovery methods. 
  • Describe detection and decision-making capabilities in incident response.  
  • Use technology and information resources to research issues in disaster recovery. 
  • Write clearly and concisely about disaster recovery topics using proper writing mechanics and technical style conventions. 

Reference no: EM131260244

Questions Cloud

How much krona does pedro have to work with : How much krona does he have to work with? How much colon does he have to work with? List your steps and the results you achieved with each step. Also, explain some factors that could cause the country's currency to weaken.
Recorded cost of the completed factory building should be : On February 12 2015, Laker Company purchased a tract of land as a factory site for $175,000. An existing building on the property was razed and construction was begun on a new factory building in March of the same year. The recorded cost of the compl..
Determine the maximum shear stress in each material : The composite shaft consists of a copper rod that fits loosely inside an aluminum sleeve. The two components are attached to a rigid wall at one end and joined with an end-plate at the other end.
Management roles-various law enforcement agencies : Review chapter 5 and create a table listing and ranking (from first to last and according to relative importance when responding to a disaster) the different it management roles, various law enforcement agencies, emergency agencies/organizations
Assignment-incident response revamp : Imagine you have just taken over the manager position for your organization's incident response team, after coming from another division in the company. Your first realization is that proper procedures, best practices, and sound technologies are n..
What is the impact to the various stakeholders : What is the impact to the various stakeholders of acquiring a surgical robot unit - What are the external and internal factors that will impact the decision? How might consumers (patients) react?
Denominator-level problem : Denominator-level problem. Thunder Bolt, Inc., is a manufacturer of the very popular G36 motorcycles. The management at Thunder Bolt has recently adopted absorption costing and is debating which denominator-level concept to use. Calculate the budgete..
Determine the maximum length of the shaft : A flexible shaft consists of a 0.20-in.-diameter steel rod encased in a stationary tube that fits closely enough to impose a torque of intensity 0.50 lb in./in. on the rod.
Review the learning resources on the hitech legislation : Consider the incentives to encourage the use of EHRs. Focus on the definition of meaningful use and how it is measured. Reflect on how the incentives and meaningful use impact the quality of patient care. Find an article in the Walden Library dealin..

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Identifies the cost of computer

identifies the cost of computer components to configure a computer system (including all peripheral devices where needed) for use in one of the following four situations:

  Input devices

Compare how the gestures data is generated and represented for interpretation in each of the following input devices. In your comparison, consider the data formats (radio waves, electrical signal, sound, etc.), device drivers, operating systems suppo..

  Cores on computer systems

Assignment : Cores on Computer Systems:  Differentiate between multiprocessor systems and many-core systems in terms of power efficiency, cost benefit analysis, instructions processing efficiency, and packaging form factors.

  Prepare an annual budget in an excel spreadsheet

Prepare working solutions in Excel that will manage the annual budget

  Write a research paper in relation to a software design

Research paper in relation to a Software Design related topic

  Describe the forest, domain, ou, and trust configuration

Describe the forest, domain, OU, and trust configuration for Bluesky. Include a chart or diagram of the current configuration. Currently Bluesky has a single domain and default OU structure.

  Construct a truth table for the boolean expression

Construct a truth table for the Boolean expressions ABC + A'B'C' ABC + AB'C' + A'B'C' A(BC' + B'C)

  Evaluate the cost of materials

Evaluate the cost of materials

  The marie simulator

Depending on how comfortable you are with using the MARIE simulator after reading

  What is the main advantage of using master pages

What is the main advantage of using master pages. Explain the purpose and advantage of using styles.

  Describe the three fundamental models of distributed systems

Explain the two approaches to packet delivery by the network layer in Distributed Systems. Describe the three fundamental models of Distributed Systems

  Distinguish between caching and buffering

Distinguish between caching and buffering The failure model defines the ways in which failure may occur in order to provide an understanding of the effects of failure. Give one type of failure with a brief description of the failure

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd