Reference no: EM132283545
Question: Topic 1: 1. Search "scholar.google" or your textbook. Discuss the technical skills required to have a CSIRT response team consisting of employees with other job duties (i.e., not a full-time CSIRT job category)? Why or why not? What factors will influence their decision? (500 words)
2. total 600 words
a) what are the phases of the overall IR (Incident response) development process?
b) What are the general stages followed by the IRP (Incident response planning )team ?
c) what are two external sources for how IRP is performed that were mentioned in the chapter?
d) What does the organizational phase of the IRP process begin with?
Topic 2: 1. Search "scholar.google" or your textbook. Discuss what role end-users typically play in incident reporting? Should end users be encouraged to report suspicious occurrences? If so, why; if not, why not. What factors typically influence the end-user decision to report (or not report) a potential incident? (500 words)
2. Using a web browser, visit the site www.honeynet.org. what is this website, and what does it offer the information security professional? Visit the "know your enemy" white paper series and select a paper based on the recommendation of your professor. Read it and prepare a short overview for your class. (500 words)
APA format... no plagiarism...2 references each