Running Head: EQUIFAX 1
IT-549 Milestone Four : Statements of Policy
Carlos Delapaz
SNHU
April 28 ,2019
EQUIFAX 2
Lately, a large number of business undertakings have fallen victims to cyber attacks.
One of the most well-known cyber incidents that had jolted the business setting involved the
Equifax firm. A number of protocols have been recommended for the firm. Similarly, various
mitigating factors to the organization have been highlighted as well. The main protocols that
have been captured here are the Incident Response protocols, Disaster Response protocols,
Access control protocols, and maintenance plan. The intention is to design a robust
information assurance plan so that such kinds of cyber incidents can be managed and
effectively tackled in the future by Equifax.
Incident Response protocols
The incident response protocol would enable the firm to properly respond and react to
such kinds of events in case they arise in the future. In order to do so, it is extremely vital to
involve organizational personnel in the security process. Equifax must implement a
functional incident response protocol so that the employees will be empowered to respond to
such an event. It would also allow them to take the necessary steps to minimize the extent of
the damage (Incident Response Protocol: Information Technology - Northwestern University,
2019).
Some of the key stages that are involved in the incident response protocol include the
preparation by the response team, the identification of the environment, the containment of
the damage, the eradication of the threat from the system, recovery and learning lessons from
the incident (Response, 2019).