response needed q ass 6

profileSuma
ResponseneededQ6.docx

Question:

Search "scholar.google.com" or your textbook.  Indicate at least one source or reference in your original post.  Discuss ways organizations have built a CSIRT. What are the components to building an effective and successful CSIRT team? 

If someone asks me what is the most influential and critical invention of the century, I would not think twice before naming Internet as one. Internet has revolutionized the way organizations and individuals communicate with each other. Invention of internet led to invention of many modes of communications like social media and business media, However, where there are a ton of pros in favor of internet and network there are also cons that strive the natural balance by inventing several dangers to organizations and individuals. Internet has made it very convenient for thieves to conduct thievery of critical and sensitive information without being physically present for the heist. It has made it convenient for the hackers to hack several organizations and individuals making them vulnerable to such attacks. Cyber security threats have become a major concern in modern times, especially for the organizations. CSIRT (Computer Security Incident Response Team) is a squad employed by organizations to identify such dangers and threats to the organization's network by promptly and swiftly responding to incidents that occur in the day to day business activities.

While the procedures and protocols followed in order to assemble a CSIRT differs from organizations to organizations, here are a few critical points and factors that an organization should factor into their planning while creating a CSIRT squad:

- The sole purpose/objective of assembling the squad

- Basic necessities for assembling the CSIRT

- The type and composition of the squad which will depend on the needs of the organization

- Roles and Responsibilities to be performed by CSIRT

- Budget Allocation

Common practices followed by organizations across industries:

- Critical data gathering

- Iron out the strategy or plan that CSIRT needs to follow

- Determine the scope of the team

- Communicate the scope to key stakeholders

- Assemble the team as per the set composition

- Regularly evaluate the performance of the team