From the course: ISACA Certified Information System Manager (CISM) Cert Prep

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

Incident management processes

Incident management processes

- [Instructor] So we've talked about the necessity of the incident response process, and we've talked about senior management and getting their buy-in, so let's look at the actual processes themselves. So, our process flow is going to start with preparation. Makes perfect sense, right? We always start with preparation. Then we move into protecting our environment, setting up mechanisms, so that we can detect malicious activity or security violations. And then, we move to triage and response. So, you can see incident response is but one phase of the incident management process. So let's look at a couple of these others, starting, of course, with incident preparation. Now, this is a role that we will take a very active, or this is a process that we'll take a very active role in. As CISMs, you know, thinking about ourselves maybe as CISOs within the organization, we're going to oversee the incident response program. So we're going to make sure that we have planning in place, that we've…

Contents