Network security incident response

Author: Schultz
Publisher:
Publish Date: 2002-05-01
Features: This book is a valuable strategic guide for guiding network and system security incident response work. It first introduces the concepts of incident response, risk analysis, and their related concepts, as well as the relationships between them. Then, it provides many constructive suggestions on the formation and management of incident response teams, the organization of time response, and proposes the classic six-stage method for incident handling. From a technical perspective, it describes intrusion tracking techniques, trap and lure techniques, and the response to internal attacks. It also dedicates three chapters to legal issues and forensic issues, discusses the human factors in incident response, and finally explores the future development direction of incident response. This book is suitable for managers and technical personnel in computer systems, network, and information security, as well as graduate students and teachers engaged in cybersecurity research in universities and colleges. It is particularly valuable for Computer Security Incident Response Teams (CSIRTs), security service enterprises, and government-related management departments, as it is a rare strategic guide available in the market.

📌 Related Posts