Flylib.com
Incident Response: A Strategic Guide to Handling System and Network Security Breaches
Incident Response: A Strategic Guide to Handling System and Network Security Breaches
ISBN: 1578702569
EAN: 2147483647
Year: 2002
Pages: 103
Authors:
E. Eugene Schultz
,
Russell Shumway
BUY ON AMAZON
Incident Response: A Strategic Guide to Handling System and Network Security Breaches
Table of Contents
Copyright
About the Authors
About the Technical Reviewers
Acknowledgments
Tell Us What You Think
Introduction
Organization of this Book
Conventions Used in This Book
Chapter 1. An Introduction to Incident Response
What Is Incident Response?
The Rationale for Incident Response
Overview of Incident Response
Summary
Chapter 2. Risk Analysis
About Risk Analysis
Types of Security-Related Risks
Obtaining Data About Security-Related Incidents
The Importance of Risk Analysis in Incident Response
Summary
Chapter 3. A Methodology for Incident Response
Rationale for Using an Incident Response Methodology
A Six-Stage Methodology for Incident Response
Caveats
Summary
Chapter 4. Forming and Managing an Incident Response Team
What Is an Incident Response Team?
Why Form an Incident Response Team?
Issues in Forming a Response Team
About Managing an Incident Response Effort
Summary
Chapter 5. Organizing for Incident Response
Virtual Teams-Ensuring Availability
Training the Team
Testing the Team
Barriers to Success
External Coordination
Managing Incidents
Summary
Chapter 6. Tracing Network Attacks
What Does Tracing Network Attacks Mean?
Putting Attack Tracing in Context
Tracing Methods
Next Steps
Constructing an
Final Caveats
Summary
Chapter 7. Legal Issues
U.S. Computer Crime Statutes
International Statutes
Search, Seizure, and Monitoring
Policies
Liability
To Prosecute or Not?
Conclusion
Chapter 8. Forensics I
Guiding Principles
Forensics Hardware
Forensics Software
Acquiring Evidence
Examination of the Evidence
Conclusions
Chapter 9. Forensics II
Covert Searches
Advanced Searches
Encryption
Home Use Systems
UNIX and Server Forensics
Conclusions
Chapter 10. Responding to Insider Attacks
Types of Insiders
Types of Attacks
Preparing for Insider Attacks
Detecting Insider Attacks
Responding to Insider Attacks
Special Considerations
Special Situations
Legal Issues
Conclusion
Chapter 11. The Human Side of Incident Response
Integration of the Social Sciences into Incident Response
Part I: Cybercrime Profiling
Part II: Insider Attacks
Part III: Incident Victims
Part IV: Human Side of Incident Response
Summary
Chapter 12. Traps and Deceptive Measures
About Traps and Deceptive Measures
Advantages and Limitations of Traps and Deceptive Measures
Focus: Honeypots
Integrating Traps and Deceptive Measures into Incident Response
Summary
Chapter 13. Future Directions in Incident Response
Technical Advances
Social Advances
The Progress of the Profession
The Nature of Incidents
Conclusion
Appendix A. RFC-2196
Site Security Handbook
Appendix B. Incident Response and Reporting Checklist
Incident Response: A Strategic Guide to Handling System and Network Security Breaches
ISBN: 1578702569
EAN: 2147483647
Year: 2002
Pages: 103
Authors:
E. Eugene Schultz
,
Russell Shumway
BUY ON AMAZON
Java I/O
The Filter Stream Classes
JAR Archives
File Filters
The java.io.Writer Class
The Java Communications API
Crystal Reports 9 on Oracle (Database Professionals)
Oracle Structures
Oracle SQL
Optimizing: Reducing Parses
Data Dictionary Report
Appendix B Functions
Metrics and Models in Software Quality Engineering (2nd Edition)
Total Quality Management
Quality Management Models
Structure Metrics
Conducting In-Process Quality Assessments
Using Function Point Metrics to Measure Software Process Improvements
GO! with Microsoft Office 2003 Brief (2nd Edition)
Objective 4. Identify Types of Software and Their Uses
Objective 1. Change Document and Paragraph Layout
Objective 6. Create a Table from Existing Text
Concepts Assessments
Performance Assessments
Extending and Embedding PHP
Properties
Summary
Appendix A. A Zend API Reference
Parameter Retrieval
Classes
Python Programming for the Absolute Beginner, 3rd Edition
The PyErrata Web Site
DBM Files
Part V: Integration
A Simple C Extension Module
Section A.3. Major Changes Between 1.3 and 1.5.2
flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net
Privacy policy
This website uses cookies. Click
here
to find out more.
Accept cookies