Security Management and Incident Handling and Response
Some Frontiers of Security Work
| Title: | Some Frontiers of Security Work (ID: EDU07115) | | Author(s): | Joseph E. St Sauver (University of Oregon) | | Origin: | Presented at EDUCAUSE Annual Conferences (10/23/2007) | | Type: | Presentations/Speeches | | Abstract: | The higher education community faces increasingly difficult issues of security in a networked world, compounded by the demands of advanced applications. Performance requirements (high bandwidth, end-to-end transparency, new protocols) are essential for the academic mission and innovation, but are not easily accommodated in current approaches to network security. The Salsa group is forging new frontiers to address these issues. | | View this resource: | |
Incident Management Capability Metrics
| Title: | Incident Management Capability Metrics (ID: CSD5144) | | Source: | CERT | | Abstract: | The CERT CSIRT Development Team has introduced a method to evaluate and improve an organization's capability for managing computer security incidents. This method uses a set of incident management best practices defined in a set of metrics called the Incident Management Capability Metrics. These metrics provide organizations a baseline against which they can benchmark their current incident management processes or services. The metrics questions explore different aspects of incident management activities. These questions are grouped into four basic functional categories: - Protect
- Detect
- Respond
- Sustain
The results from an evaluation using the metrics will help an organization determine the maturity of its incident management capability regardless of organization type or sector (commercial, academic, government, etc.). | | View this resource: | |
|