The 6 Steps of the Incident Response Life Cycle and What Is a Security Incident?

  Рет қаралды 10,013

Cyber Gray Matter

Cyber Gray Matter

Күн бұрын

Пікірлер: 21
@34meridian
@34meridian Жыл бұрын
Fantastic video, very informative and breaks everything down well. Thanks!
@ishwaryanarayan1010
@ishwaryanarayan1010 Жыл бұрын
Your voice and speed make us to listen and learn enthusiastic way 😎
@The_LEGO_Journal
@The_LEGO_Journal Жыл бұрын
this is very cool!
@TimBohn1
@TimBohn1 2 жыл бұрын
The company I work for has launched a new product that ingests events and alerts from other tools in an organizations security stack and allows that organization to automate real time security tips to the user who's risky action caused the event or alert via Slack or Teams. You have a way of describing things that fit in my brain:). I now understand the difference between an event and alert. Thank you so much for your videos. Now I need you to do a video on detection rules, to bring it all together for me :).
@cybergraymatter
@cybergraymatter 2 жыл бұрын
Can you specify detection rules? Like do you want more technical information on how to build one or a less technical way of how one is designed?
@syh7522
@syh7522 2 жыл бұрын
Excellent and to-the-point teaching content with excellent background music. Appreciated and already bookmarked 👍👍👍 Thanks ma'm..
@cybergraymatter
@cybergraymatter 2 жыл бұрын
You're very welcome! I greatly appreciate the feedback. I've been debating leaving out the background music, but I think it sounds nice.
@SoberCatboy
@SoberCatboy 3 жыл бұрын
Great music! And video 😸. You're a gentlewoman and a scholar. 🧐
@DrThrax009
@DrThrax009 Жыл бұрын
What is the difference between an incident and sexurity breach?
@cybergraymatter
@cybergraymatter Жыл бұрын
Hello! So an incident can happen for many reasons, and it doesn't have to mean a breach. A breach is a type of incident.
@DrThrax009
@DrThrax009 Жыл бұрын
@@cybergraymatter understood. Thank you!
@ditoman1
@ditoman1 2 жыл бұрын
Simlple and clean explanation... why did you choose SANS over NIST?
@cybergraymatter
@cybergraymatter 2 жыл бұрын
Thanks for your comment, David! The SANS has more steps than the NIST, and they basically say the same thing. I was wanted to elaborate on the cycle with more steps to create addutional explanation. They both have different value depending on the organization. NIST is for government use, and there could be a full containment, eradication, and recovery team. Another organization may have to outsource their recovery, so it fits better in its own step all together.
@MubashirMohd-v6h
@MubashirMohd-v6h 9 ай бұрын
Name the step responsible for writing down every information that could be used and be classified as important. (2 words)
@starboygadtuso9530
@starboygadtuso9530 2 жыл бұрын
SANS has 6 stages NIST has 4 Stages, they both are the same. Why not just make 1 the standard in the overall cyber security industry. Everyone should all go by NIST (government). It's not really necessary trying to understand one thing in two different ways you know. Why not just call stage 2 identification instead of calling it "detection and analysis". Are we more worried about the impact of the incident or differentiating terminologies when its all the same thing.
@cybergraymatter
@cybergraymatter 2 жыл бұрын
Thanks for the input! I agree that it's silly that they essentially say the same thing, yet they are both treated as different standards. In fact, there's even ISO and ISACA to add to the list. It would have been easier to choose one, but I just wanted viewers to know the difference, as this may come up on a certification exam or asked in an interview. I tried to make the focus on the content of the steps vs the fact that they are arranged differently. As for what standard we should use, it really comes down to what an organization chooses. You may have a specific team to contain the incident and another that's primary function is to recover from it, so SANS might fit better in the IR plan layout when identifying who is in charge of what.
@starboygadtuso9530
@starboygadtuso9530 2 жыл бұрын
@@cybergraymatter thank you very much for the knowledge. it takes a real one to share knowledge like you did.
@williechain6747
@williechain6747 2 жыл бұрын
Noice
@The_LEGO_Journal
@The_LEGO_Journal Жыл бұрын
cool bruh
@munishjain6642
@munishjain6642 2 жыл бұрын
Speak slow please
@cybergraymatter
@cybergraymatter 2 жыл бұрын
Thanks for your comment, Munish. I will try and slow down for the next video. In the meantime, you can slow the video down to .75x speed in the video settings. Hope this helps!
CertMike Explains Incident Response Process
11:54
Mike Chapple
Рет қаралды 13 М.
NIST Incident Response Framework - Lisa
20:59
White Hat Cal Poly
Рет қаралды 1,3 М.
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН
小丑教训坏蛋 #小丑 #天使 #shorts
00:49
好人小丑
Рет қаралды 54 МЛН
Cybersecurity Trends for 2025 and Beyond
16:55
IBM Technology
Рет қаралды 206 М.
Building a Cybersecurity Framework
8:27
IBM Technology
Рет қаралды 51 М.
Cybersecurity IDR: Incident Detection & Response | Google Cybersecurity Certificate
1:43:03
Incident Response Framework and Best Practices
1:08:28
EC-Council
Рет қаралды 906
Cybersecurity Architecture: Five Principles to Follow (and One to Avoid)
17:34
How to Build a Next Generation Security Operation Centre (SOC)
26:15
CYBERSECURITY INCIDENT RESPONSE LIFECYCLE: Everything You NEED to Know!
23:47
Satisfying Vend 😦 Ep.5 #shorts #satisfying #vendingmachine
0:23
TYE Arcade
Рет қаралды 17 МЛН
три кошака и ростелеком
0:26
Мистер Денала
Рет қаралды 2,4 МЛН
shocking end 🥴🤯 LeoNata family #shorts TikTok
0:54
LeoNata Family
Рет қаралды 41 МЛН
Halloween is coming
0:12
Younes Zarou
Рет қаралды 3,4 МЛН
Её автомобиль никто не хотел ремонтировать!
20:12
Гараж Автоэлектрика
Рет қаралды 1,5 МЛН