TLP - The Digital Forensics Podcast

Episode 3 - (Part 2) NIST SP 800-61 Computer Security Incident Handling Guide (Detection)

Clint Marsden Season 1 Episode 4

Send us a text

In this conclusion of the Detection phase, Clint wraps up Incident Prioritisation. This includes Functional impacts of the incident, information impact of the incident and the recoverability of the incident.

Not all of these are needed, or relevant when tracking your incident and Clint explains when to categorise incidents using these factors.

To finish off, Clint discusses incident notification - Who are the stakeholders that need to be informed and included in your incident response process, and how will they be notified?

Auscert: www.auscert.org.au

People on this episode

Podcasts we love

Check out these other fine podcasts recommended by us, not an algorithm.