Building a Culture of Incident Readiness
Due to the continued evolution of cyber threats, organizations have been forced to adapt their Incident Response (IR) strategies as fast as attackers can change their tactics. There is currently a lot of interest in determining and improving the threat preparedness of organizations. Additionally, there have been changes to the conventional techniques used to improve security teams' preparedness for attacks, including the use of Artificial Intelligence (AI), which is gaining prominence in IR processes regardless of whether they are on-premises, in the cloud, or in a hybrid environment.
This chapter focuses on these new changes regarding IR and explains how organizations can adopt them. In doing so, we'll cover the following topics:
- Threat hunting
- Purple teaming
- Artificial intelligence and incident response
- IR readiness in the cloud
Building a culture of incident readiness starts with threat...