02.07.2014 Views

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

State of the Practice of Computer Security Incident Response Teams ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

sectors, 7, 16, 42, 46, 89, 99, 103, 107,<br />

133, 137<br />

secure communications, 105<br />

secure practices, 129<br />

Securing Information Assets: Planning,<br />

Prevention and <strong>Response</strong>, 153<br />

security<br />

awareness training, 12, 65, 68, 75, 77,<br />

86, 128<br />

breaches, 64, 85, 115<br />

clearances, 77<br />

configuration, 68, 86<br />

consulting, 12<br />

department, 51<br />

experts, 15, 73<br />

flaws, 109<br />

managers, 52<br />

policies, 12<br />

policy development, 67<br />

practices, 64<br />

product development, 68<br />

teams, 15, 16, 68, See also ad hoc<br />

teams<br />

weaknesses, 88<br />

<strong>Security</strong> Architecture and <strong>Incident</strong><br />

Management for E-business, 153, 154<br />

<strong>Security</strong> Emergency <strong>Response</strong> Team, 27<br />

<strong>Security</strong>Map.Net CERT, 29<br />

SEI, 18<br />

Senior Experts Group on Transnational<br />

Organized Crime, 117<br />

SERT, 13, 27, 63<br />

servers, 17<br />

service interruptions, 58<br />

service level agreements, 75<br />

service quality management services, 66<br />

services, 55, 56, 65, 66, 73, 88, 98, 105,<br />

124<br />

severity scales, 98<br />

shared authority, 53<br />

sharing information, 106, 122<br />

Siemens, 55<br />

Singapore <strong>Computer</strong> Emergency<br />

<strong>Response</strong> Team (SingCERT), 27, 28,<br />

29<br />

SIRT, 13<br />

size, <strong>of</strong> CSIRTs, 71<br />

skills, 49, 76<br />

Slammer worm, 111, 114<br />

Snort, 125<br />

Sobig.F, 111<br />

S<strong>of</strong>tware Engineering Institute, 18<br />

Sokol, M. S., 85<br />

Solha, Liliana Velásquez, xiii<br />

sophistication <strong>of</strong> attacks, 72<br />

source code, 109<br />

Space Physics Analysis Network (SPAN),<br />

20, 21<br />

spamming, 103<br />

SPAN CERT, 21<br />

SPAN-France, 21<br />

speed <strong>of</strong> attacks, 111<br />

sponsorship, 47<br />

SQL, 94, 111<br />

SQL/Slammer worm, 114<br />

staff, 4, 49<br />

burnout, 78<br />

costs, 54, 57, 60<br />

full-time, 72<br />

number <strong>of</strong>, 71<br />

part-time, 72<br />

positions, 72<br />

responsibilities, 56, 74, 77, 84<br />

roles, 77<br />

skills, 76<br />

training, 26<br />

staffing levels, 90<br />

standards, 64, 119, 122, 134<br />

interface, 134<br />

pr<strong>of</strong>essional, 134<br />

start-up costs, 54<br />

state computer crime laws, 118<br />

<strong>State</strong> <strong>of</strong> <strong>the</strong> <strong>Practice</strong><br />

structure, 6<br />

summary, 133<br />

uses, 5, 6<br />

<strong>State</strong> <strong>of</strong> <strong>the</strong> <strong>Practice</strong> project, 3<br />

<strong>State</strong> <strong>of</strong> Vermont <strong>Incident</strong> Handling<br />

Procedure, 154<br />

<strong>State</strong>ment on Auditing Standards (SAS)<br />

No. 70, 175<br />

statistics, incident, 90, 120<br />

statutory laws, 114<br />

Steinauer, Dennis, D., 20<br />

Stikvoort, Don, xiii<br />

strategic direction, 74<br />

strategic plan, 5<br />

stress, 76<br />

SURFnet, 55<br />

SURFnet <strong>Computer</strong> <strong>Security</strong> <strong>Incident</strong><br />

<strong>Response</strong> Team, 22<br />

surveillance techniques, 101<br />

270 CMU/SEI-2003-TR-001

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!