02.07.2014 Views

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

CSIRT staff, 57, 60<br />

<strong>of</strong> CSIRTs, 64<br />

Best Current <strong>Practice</strong>, 115<br />

best practices, 74, 75, 84, 85, 86, 130,<br />

134, 137, 169<br />

Best <strong>Practice</strong>s for Seizing Electronic<br />

Evidence, 115<br />

Biber, David, xiv<br />

binary files, 91<br />

BKIS, 28<br />

Blaster worm, 111<br />

BMO ISIRT, 32<br />

bottom-up approach, 23<br />

Bradley, Diane, xiv<br />

Brazilian Federal Police, 32<br />

Brazilian Internet Steering Committee, 31<br />

Brazilian Research Network CSIRT, 30<br />

breach <strong>of</strong> information, 61<br />

break-in, 93<br />

British Standards (BS), 4<br />

BS EN ISO17799, 85<br />

BS7799, 85<br />

budgets, 56, 72, 129<br />

Bunten, Andreas, xiii<br />

burnout, 78<br />

business<br />

case, 56, 64<br />

continuity plans, 64<br />

hours, 102<br />

intelligence, 12, 64<br />

CAIF, 123<br />

CAIS, 30, 31<br />

California security law, 115<br />

Canadian <strong>Computer</strong> <strong>Incident</strong> <strong>Response</strong><br />

Coordination Centre, 32<br />

Canadian CSIRTs, 32, 33<br />

CanCERT, 55<br />

Carnegie Mellon University, 19, 34<br />

case laws, 114<br />

case studies, 100, 130, 133<br />

categorizing<br />

incidents, 95<br />

reports, 91<br />

CdnCIRCC, 32<br />

Center for Education and Research in<br />

Information Assurance and <strong>Security</strong>,<br />

62<br />

Centers <strong>of</strong> Academic Excellence in<br />

Information Assurance Education, 79<br />

CEOs, 107<br />

CERIAS <strong>Incident</strong> <strong>Response</strong> Database, 62,<br />

95<br />

CERNET <strong>Computer</strong> Emergency <strong>Response</strong><br />

Team, 28<br />

CERT, 19<br />

CERT Coordination Center. See CERT/CC<br />

CERT CSIRT Development Team, ix, 3, 6,<br />

13, 15, 59<br />

CERT Guide to System and Network<br />

<strong>Security</strong> <strong>Practice</strong>s, 82, 131, 151<br />

CERT/CC, ix, 8<br />

AirCERT project, 125<br />

annual CSIRT conference, 22<br />

certification program, 80, 162<br />

coordination with, 107<br />

courses, 157<br />

CSIRT course attendance, 46<br />

Current Activity web page, 125<br />

evolution, 51<br />

FIRST membership, 21<br />

funding, 55<br />

incident reporting form, 92<br />

influence on early European teams, 23<br />

origin <strong>of</strong>, 19<br />

Overview <strong>of</strong> Attack Trends, 110<br />

response to WANK worm, 20<br />

statistics, 112<br />

CERT-BUND, 95<br />

CERTCC-KR, 27, 28, 46<br />

CERT-Certified <strong>Computer</strong> <strong>Security</strong><br />

<strong>Incident</strong> Handler, 80<br />

certification, 26, 77, 80, 134, 135, 137,<br />

162<br />

Certified <strong>Incident</strong> Handler, 80<br />

Certified Information Systems <strong>Security</strong><br />

Pr<strong>of</strong>essional, 80<br />

CERT-NL, 22, 55<br />

CERT-RS, 31<br />

CERTs in Europe task force, 24<br />

challenges, 48, 56, 60, 91, 112, 128<br />

checklists, 130, 137<br />

Chief Information Officers (CIOs), 4, 52,<br />

106<br />

Chief <strong>Security</strong> Officers (CSOs), 4, 52<br />

CHIHT, 127<br />

child pornography, 116<br />

Chilean <strong>Computer</strong> Emergency <strong>Response</strong><br />

Team, 30<br />

China <strong>Computer</strong> Emergency <strong>Response</strong><br />

Team Coordination Center, 28<br />

CIAC, 21<br />

260 CMU/SEI-2003-TR-001

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!