From the course: CISSP Cert Prep (2021): 7 Security Operations

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Reporting and documenting incidents

Reporting and documenting incidents

From the course: CISSP Cert Prep (2021): 7 Security Operations

Start my 1-month free trial

Reporting and documenting incidents

- [Instructor] Communication is an essential part of cybersecurity incident response efforts. Incident response teams must notify key stakeholders about the incident, provide updates and maintain permanent records of security investigations. There are three important components to incident reporting. The first is notification ensuring that everyone who needs to know about an incident is aware that an incident response effort is underway. The second is real-time updates ensuring that those who need to be familiar with the response efforts are kept informed along the way. And the third is documentation ensuring that there is a permanent record kept of the incident details and the response effort. Notification is a key responsibility of incident responders. As early as possible in an incident responders should trigger notification of key personnel, both inside the organization and external responders if applicable. Every…

Contents