resolution and best practices v2 · oce/ars d/tr oinn-l,' j'su top threat destinations -...
TRANSCRIPT
![Page 1: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/1.jpg)
![Page 2: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/2.jpg)
https://youtu.be/X08wgodFgXw
![Page 3: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/3.jpg)
![Page 4: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/4.jpg)
![Page 5: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/5.jpg)
![Page 6: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/6.jpg)
![Page 7: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/7.jpg)
![Page 8: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/8.jpg)
![Page 9: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/9.jpg)
![Page 10: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/10.jpg)
![Page 11: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/11.jpg)
![Page 12: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/12.jpg)
![Page 13: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/13.jpg)
![Page 14: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/14.jpg)
![Page 15: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/15.jpg)
![Page 16: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/16.jpg)
![Page 17: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/17.jpg)
![Page 18: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/18.jpg)
![Page 19: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/19.jpg)
![Page 20: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/20.jpg)
![Page 21: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/21.jpg)
![Page 22: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/22.jpg)
Membership of the Incident Response Team
22
• Incident Response Team leader/coordinator
• Privacy Officer
• Legal
• Risk Management
• Others as appropriate– Information security– Law Enforcement– HR, employee relations, patient relations– Public relations / Marketing– Outside legal counsel
![Page 23: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/23.jpg)
Simplified Incident Response Strategy
How do we respond to a cyber security incident?
1. DISCOVERY
0. PREVENTION
2. EVALUATION & TRIAGE 3. MANAGING THE SHORT TERM CRISIS
4. LONG TERM RESPONSEMANAGEMENT
• Forensic Investigation• Containment• Legal Review• Recovery
• Incident Response Team• Incident Analysis – Assess the Impact
MINOR: Detect & ResolveMAJOR: Escalate through Incident Response Plan
• Report Discovery
• Immediate Response Planning• Communications, PR, Crisis Management
Recovery
• Long Term Recovery Planning: Legal, Reputational, Media
• Customer Communications• Recommend Improvements
![Page 24: Resolution and best practices v2 · Oce/ars D/tr oinn-l,' J'SU Top Threat Destinations - Last 1 Week (Feb 19 2019 - Feb . Application Proxy.HTTP itrix.Receiver a Tea mViewer tàGoToMypc](https://reader036.vdocument.in/reader036/viewer/2022071100/5fd8ac465258975fb815cd2e/html5/thumbnails/24.jpg)