02.07.2014 Views

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Index<br />

@stake, 157<br />

abnormal network traffic, 67<br />

abuse <strong>of</strong> network resources, 82<br />

academic research networks, 27<br />

academic sponsorship, 55<br />

acceptable use documents, 77<br />

accreditation, 26, 28, 40, 80, 120<br />

ACID, 125<br />

actuarial models, 64<br />

ad hoc teams, 53, 56, 69, 71, 83, 89, 99,<br />

107<br />

Additional Protocol to <strong>the</strong> Convention on<br />

Cybercrime, 116<br />

administrative support staff, 73, 76<br />

Advance Planning for <strong>Incident</strong> <strong>Response</strong><br />

and Forensics, 152<br />

adverse event, 82<br />

advisories, 55, 67, 75, 98, 123, 134<br />

Air Force <strong>Computer</strong> Emergency <strong>Response</strong><br />

Team (AFCERT), 21<br />

AirCERT, 125<br />

alerts, 67, 88, 98, 120, 134<br />

Ames Research Center <strong>Computer</strong><br />

Network <strong>Security</strong> <strong>Response</strong> Team, 21<br />

analysis, 86<br />

centers, 14<br />

tools, 58<br />

Analysis Console for Intrusion Databases,<br />

125<br />

anecdotal information, 133<br />

APCERT, 28, 38, 40, 122<br />

APEC, 29<br />

APECTEL, 29<br />

APSIRC Working Group, 28<br />

APSIRT, 30<br />

ArCERT, 31<br />

archives, data, 124<br />

ARPANET, 17<br />

artifact analysis, 21, 68<br />

artifacts, 2<br />

Asia Pacific<br />

coordination <strong>of</strong> teams, 28<br />

CSIRT training, 29<br />

CSIRTs, 27, 28, 29<br />

Asia Pacific <strong>Computer</strong> Emergency<br />

<strong>Response</strong> Team. See APCERT<br />

Asia Pacific Networking Group (APNG),<br />

28<br />

Asia Pacific region, 23<br />

Asia Pacific Regional Internet Conference<br />

on Operational Technologies, 29<br />

Asia Pacific <strong>Security</strong> <strong>Incident</strong> <strong>Response</strong><br />

Coordination (APSIRC), 28<br />

Association <strong>of</strong> European Research<br />

Networks, 22<br />

asymmetric threat, 111<br />

AT&T Latin America - Peru <strong>Security</strong><br />

<strong>Incident</strong> <strong>Response</strong> Team, 30<br />

attack tools, distributed, 110<br />

attacks, 11, 67, 109, 128<br />

speed <strong>of</strong>, 111<br />

audit department, 51, 65<br />

auditors, 76<br />

audits, 5, 65<br />

AusCERT, 23, 27, 28, 51, 55, 63, 72, 82,<br />

97<br />

Australian <strong>Computer</strong> Crime and <strong>Security</strong><br />

Survey, 104<br />

Australian incidents, 63<br />

Australian Standard for Managing IT<br />

Evidence, 124<br />

Australian/Deloitte Touche<br />

Tohmatsu/NSW survey, 61<br />

authority, CSIRT, 49, 53, 111, 129<br />

Automated <strong>Incident</strong> Reporting, 125<br />

automated scanning. See scanning<br />

automation<br />

<strong>of</strong> attack tools, 110<br />

<strong>of</strong> incident handling, 135<br />

availability, 116<br />

Bach Khoa Internetwork <strong>Security</strong> Center,<br />

28<br />

Backbone <strong>Security</strong>, 157<br />

Bank <strong>of</strong> Montreal InfoSec <strong>Incident</strong><br />

<strong>Response</strong> Team, 32<br />

BCP 55/RFC 3227, 115<br />

benchmarking, 3, 130<br />

benefits<br />

CMU/SEI-2003-TR-001 259

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!