Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Lab Exercise 1: Following are the phases in Incident Handling and Response Preparation Detection Containment Eradication Recovery Follow-up You have to complete tasks TASK 1

Lab Exercise 1:

Following are the phases in Incident Handling and Response

  1. Preparation
  2. Detection
  3. Containment
  4. Eradication
  5. Recovery
  6. Follow-up

You have to complete tasks

TASK 1 Briefly explain each of the phases in your own words

TASK 2 Categorize the following example with respect to each phase.

Practical example

You have an eCommerce Site:

Some Client reported the server performance issue. Tech Support found out that the load on site was too high and it was not normal. Web Developer examined the code of the website and identified foreign code on the server. Web Developer than referred this issue to the information security team. Information Security team began collecting data. They further Contacted External Incident Response team.

Incident Response Team examined the server and they recommended for blocking some specific external IP addresses immediately. Then the team examined the server population and collected all the evidence very carefully and provided a written report of the incident. Then the team recommended removal of foreign code from the Web Server. Removing the foreign code from Web Server helped in recovering the system back to its normal performance. The team also recommended policy and procedure changes in order to avoid this incident in future.

Phase

Scenario Description

Preparation

Detection

Containment

Eradication

Recover

Follow-up

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image_2

Step: 3

blur-text-image_3

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Database Concepts

Authors: David M. Kroenke

1st Edition

0130086509, 978-0130086501

More Books

Students also viewed these Databases questions

Question

What tools might be helpful?

Answered: 1 week ago