From the course: Cloud Security Operations by Pearson
Unlock this course with a free trial
Join today to access over 25,200 courses taught by industry experts.
Incident and problem management
From the course: Cloud Security Operations by Pearson
Incident and problem management
In this lesson, we're going to compare incident management to problem management. Now as you know, incident management are the steps that we take when a negative event disrupts our normal operations. Now the primary goal of incident management is to reduce the immediate impact. So we should have documented incident types and category definitions based on risk assessments, our risk register or risk ledger, also our business impact analysis processes. For incident management, we must know the roles and responsibilities of our first responders, including the reporting requirements and escalation or elevation processes, for example, to a service desk or a technical desk. You want to collect contact lists, contact public relations people, and even sometimes legal teams or the legal department. And of course, the best practices is to have predefined checklists or walkthrough, exercises, drills, and even simulations. In the incident response lifecycle, the first phase is preparation. The…
Contents
-
-
-
-
(Locked)
Configuration and change management7m 26s
-
(Locked)
Continuity management2m 27s
-
(Locked)
Information security management1m 21s
-
(Locked)
Service-level management3m 58s
-
(Locked)
Incident and problem management7m 51s
-
(Locked)
Release and deployment management2m 47s
-
(Locked)
Availability management2m 26s
-
(Locked)
Capacity management1m 25s
-
(Locked)
Security operations centers (SOC)9m 5s
-
(Locked)
Intelligent security control monitoring15m 26s
-
(Locked)
Vulnerability assessment3m 20s
-
(Locked)
-
-
-