Incident Response Playbook
Shelby Hoke
University of Phoenix
Introduction
Malware is a harmful software created to steal data including personal information, banking
information, login credentials, and passwords. There are, however, some hackers that target large
organizations with the intent to steal confidential information such as client information, employee's
information, the organization’s bank information, and other valuable files. Some types of malware
include adware, DDoS (Distributed denial of service) attacks, worms, viruses, and Trojan horses.
Considering information security is a major issue, organizations have highly skilled IT (information
technology) teams to protect their systems. Typically, these teams have an incident response playbook
which allows the teams to be able to identify the characteristics of an incident, consider potential
solutions, take the appropriate actions, and resolve the incident in the most effective and efficient
manner. Throughout this playbook, you will find several hypothetical scenarios, as well as several ways
to mitigate the incidents.
Types of malware:
Ransomware
Adware
Spyware
Trojans
Worms
Viruses
Bots
Rootkits
What is an incident response playbook?
In case of a data breach, a cyber response playbook outlines your plan of action. Most organizations
maintain simple incident response plans, then augment those with cyber response playbooks in
response to specific types of incidents. By using incident response playbooks, teams are equipped with
standard procedures and steps for responding to and resolving incidents instantly. Training and
exercises can also be included in playbooks to prepare teams for future incidents during peacetime.
Malware