There are many different incidents, and each of them requires a different incident response plan. For example, dealing with a flood is totally different to dealing with the failure of a server's hardware. The first stage of an incident response plan is to collect any volatile evidence so that the source of that incident can be identified, followed by containment of the incident itself, followed by the recovery procedures. Let's look in more detail at the components required to make incident response successful:
- Documented Incident Types: We should already have documentation about each incident that shows the steps required for a positive response. These types of incidents are laid down under different category definitions.
- Category Definitions: Your company should have an outline of a plan for dealing with most incidents ranging from the...