Response in Incident Management: The actions taken to identify, assess, and manage security incidents. This is used in organizations to prevent or mitigate the impact of incidents and to restore normal operations as quickly as possible. For example, an incident response team may use tools and processes to contain an attack, collect evidence, and communicate with stakeholders.
Categories: CC D2: BC - DR and Incident Response Concepts | CCSP D5: Cloud Security Operations | CISM D4: Incident Management | CISSP D7: Security Operations | Security+ D5: Security Program Management and Oversight | SSCP D4: Incident Response and Recovery
« Back to Glossary Index