02.07.2014 Views

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

internal, 14, 92<br />

internal centralized, 15<br />

internal combined, 15<br />

internal distributed, 15<br />

ISP, 33, 43, 44, 47<br />

Latin American, 30, 31, 32, 43<br />

law enforcement, 7, 46<br />

lists <strong>of</strong>, 38<br />

military sector, 7, 33, 52, 54, 57, 69,<br />

71, 102, 104, 105, 108<br />

national, 28, 42, 43, 46, 51, 54<br />

non-pr<strong>of</strong>it sector, 7, 31, 33, 54, 57, 69,<br />

89, 99, 103, 104, 105, 108<br />

number <strong>of</strong>, 38<br />

operating, 6<br />

placement in organization, 49, 51<br />

power and energy sector, 46<br />

proactive functions <strong>of</strong>, 11<br />

public administration, 7<br />

reactive functions <strong>of</strong>, 11<br />

registered, 40, 45<br />

research, 31, 32, 33, 42, 43, 54<br />

research network, 104<br />

security company, 47<br />

size <strong>of</strong>, 71<br />

state government, 33<br />

telecommunications sector, 31, 32, 33<br />

transportation sector, 46<br />

types <strong>of</strong>, 14<br />

university, 31, 32, 45, 47, 54, 59<br />

CSIRTsectors, 99, 107<br />

CSRC, 21<br />

cultural differences, 23<br />

Curry, D. A., 85<br />

Curtis, Pamela, xiv<br />

customer privacy policies, 64<br />

customer service, 76<br />

cyber<br />

crime, 114, 117<br />

crime laws, 114, 116, 118, 137, 165<br />

forensics. See forensics<br />

insurance, 64<br />

security, 33<br />

security laws, 33<br />

space, 117<br />

damage estimates, 59, 60<br />

DARPA, 18<br />

data<br />

archiving, 124<br />

collection, 122, 124, 125<br />

management, 134<br />

privacy, 33<br />

protection requirements, 11, 64, 118<br />

repository, 75<br />

syn<strong>the</strong>sis, 125<br />

database tools, 59<br />

DECNET, 20<br />

Defense Advanced Research Projects<br />

Agency. See DARPA<br />

Defense Communication Agency, 21<br />

Defense Data Network, 21<br />

definitions, <strong>of</strong> computer incident terms, 82<br />

Deloitte Touche Tohmatsu, 82<br />

denial-<strong>of</strong>-service attacks, 58, 61, 93, 103,<br />

110, 118<br />

Department <strong>of</strong> Trade and Industry (U.K.),<br />

61<br />

detection, 83, 86, 133<br />

DFN-CERT, 22, 51, 95<br />

diagnostic procedures, 67<br />

Digital Equipment Corporation, 20<br />

disaster recovery, 73<br />

disseminating information, 74<br />

distributed attack tools, 110<br />

Distributed Intrusion Detection System,<br />

126<br />

DITSCAP, 174<br />

Dittrich, David, 59<br />

DND CIRT, 32<br />

DNS (Domain Name System), 111<br />

DoD Directive 8530.1, 80<br />

DoD Instruction 8530.2, 80<br />

DShield.org, 126<br />

eCSIRT, 84<br />

eCSIRT.net, 72, 120<br />

EISPP, 121<br />

Electronic Crime Scene Investigation: A<br />

Guide for First Responders, 115<br />

electronic records, 124<br />

email relays, 17<br />

EnCase, 101<br />

encrypted information, 91<br />

eradication, 83<br />

establishing CSIRTs, 49<br />

ETS no. 185, 116<br />

ETS no. 189, 116<br />

EU. See European Union<br />

EuroCERT, 24, 27<br />

European<br />

constituencies, 23<br />

coordination center, 24<br />

CMU/SEI-2003-TR-001 263

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!