which of the following is not a common source of precursor or indicator
Answers
Answered by
1
Answer:
Since the goal of a SOC is to respond to or prepare for incidents, one way to structure the underlying processes is through the Incident Response Lifecycle [103], [114], [119], [120] or similar frameworks such as presented in ISO/IEC 27035:2016 [123]. According to the NIST Computer Security Incident Handling Guide [124], the Incident Response Lifecycle comprises the four steps ''preparation'', ''detection and analysis'', ''containment, eradication and recovery'' and ''Post-incident activity'', which also form the structure of the following chapter. At this point, we would like to emphasize that, in our view, the literature only allows an incomplete picture regarding processes. ...
Explanation:
Similar questions