From the course: Cloud Security Operations by Pearson

Unlock this course with a free trial

Join today to access over 25,200 courses taught by industry experts.

Incident and problem management

Incident and problem management

In this lesson, we're going to compare incident management to problem management. Now as you know, incident management are the steps that we take when a negative event disrupts our normal operations. Now the primary goal of incident management is to reduce the immediate impact. So we should have documented incident types and category definitions based on risk assessments, our risk register or risk ledger, also our business impact analysis processes. For incident management, we must know the roles and responsibilities of our first responders, including the reporting requirements and escalation or elevation processes, for example, to a service desk or a technical desk. You want to collect contact lists, contact public relations people, and even sometimes legal teams or the legal department. And of course, the best practices is to have predefined checklists or walkthrough, exercises, drills, and even simulations. In the incident response lifecycle, the first phase is preparation. The…

Contents