Summary
In this chapter, we laid out the groundwork for an incident response program/plan. We looked at the process and procedures that are typically involved, along with the activities surrounding incident response preparation and handling. We looked at incident response preparation, as well as incident handling, and learned how to prepare for and deal with security incidents in a clear and precise way.
You should now be able to take this material and make it actionable for your environment.
In the next chapter, we are going to close out this book by discussing how to build a test/lab environment. You can then use this to perform some of the exercises and tests that we covered throughout this book.