Incident response is like tracking down a perpetrator


Incident response is like investigating a real burglary. You look for evidence of the intruder at the crime scene, find his targets and his getaway car, and repair any holes. Discover any cuts in your chain link fence. Take a few steps back for more perspective. Find the intruder’s targets. What assets are near the compromised fence? Investigate in both directions to find the intruder’s target and getaway car. Fix the fence. Resolve any issues and patch vulnerabilities.

Larry Zulch, President and CEO of Savvius, walks us through the crime scene.

Leave a Reply

Your email address will not be published. Required fields are marked *