Loading...

Messages

Proposals

Stuck in your homework and missing deadline? Get urgent help in $10/Page with 24 hours deadline

Get Urgent Writing Help In Your Essays, Assignments, Homeworks, Dissertation, Thesis Or Coursework & Achieve A+ Grades.

Privacy Guaranteed - 100% Plagiarism Free Writing - Free Turnitin Report - Professional And Experienced Writers - 24/7 Online Support

Components to building an effective and successful csirt team

18/11/2021 Client: muhammad11 Deadline: 2 Day

Module 6 Discussion Forum
Include at least 250 words in your posting and at least 250 words in your reply. Indicate at least one source or reference in your original post. Please see syllabus for details on submission requirements.

Module 6 Discussion Question
Search "scholar.google.com" or your textbook. Include at least 250 words in your reply. Indicate at least one source or reference in your original post. Discuss ways organizations have built a CSIRT. What are the components to building an effective and successful CSIRT team?

Reply-1(Vindhya)

In the building, an effective and successful CSIRT the steps involved are as follows:

1. Buy-In and support of management are obtained: the creation of an effective incident response team becomes problematic and difficult without the support of the management. The support includes time, funding, and provision of resources to the team (D. Penedo, 2006). The important responsibility and function of the CSIRTs are obtaining managements perceptions and expectations.

2. The strategic plan of CSIRT development is determined: by dealing with the administrative issues and addressing the project management issues the development of CSIRT is to be managed.

3. Relevant information is gathered: the service needs of the organization and to determine the incident response the information is gathered. In gathering the information the resources available are inventories of assets and critical system, for enterprise the organization charts and functions of specific business, networks, and systems organizational topologies, plans of business-continuity or existing disaster recovery, the physical security breach of organization is notified by existing guidelines, existing plans of incident-management, regulations of institution or parental, and existing security policies and procedures.

4. CSIRT vision is designed: The key components of the CSIRT are identified by bringing the gathered information to incident response constituency needs. For creating, CSIRT vision the points to be followed are (Z. Yunos, 2016): Constituency identification, the goals, objectives, and mission of CSIRT are defined, CSIRT services are selected and provided to the constituency, the organizational model is determined, required resources are identified, and CSIRT funding is determined.

5. The vision of CSIRT is communicated: the operational plan and vision are communicated to constituency, management, and others involved in the operation and feedbacks are obtained. Communicating vision before implementation helps in identification of problems.

6. CSIRT implementation begins: the steps involved in implementation are the CSIRT staff is hired and trained, in supporting team the necessary infrastructure is built and equipment are bought, the initial set of CSIRT procedures and policies are developed, the specifications of incident-tracking system are defined and the forms and guidelines of incident-reporting are developed for a constituency.

7. CSIRT announcement: broadly announce to constituency when CSIRT is operational also include the operation hours and contact information.

8. The effectiveness of CSIRT is evaluated: information on effectiveness is gathered by including against other CSIRTs the benchmark, with constituency representatives the general discussions involved, on a periodic basis the surveys of evaluation are distributed to members of the constituency, and in evaluating the team the quality parameters or set of criteria created by an audit.

References:

D. Penedo (2006), Optimal Policy for Software Vulnerability Disclosure. Good practice guide for CERTs in the area of Industrial Control Systems - Computer Emergency Response Capabilities considerations for ICS.

Z. Yunos (2016), Creating and Managing Computer Security Incident Handling Teams (CSIRTs), CERT Training and Education Networked Systems Survivability Software Engineering Institute Carnegie Mellon University.

Reply-2 ( Glad)

CSIRT (Computer Security Incident Response Team) is a team within an organization which responds to threats or incidents as they occur within the organization. Their responsibilities include,

- Maintaining and creating an incident response plan

- Identifying, troubleshoot and remediation of any incidents

- Communication methods for incident responses

- Combing the organization and proactively identifying and physical or network security threats.

- Recommending technologies, policy updates, governance updates based off the past threats

Keeping in mind the roles and responsibilities of this team, to build a team to perform these activities and own the responsibilities, the first step towards creating this team would be to buy management support to ensure they are in agreement with the creation of such a team and are on board to sign off on the resource allocation and budget as well as procedural aspects of building a CSIRT team.

The next step would be to create a strategic development plan on the various facets the team should possess and within which time frame team should be formed. The plan should be feasible and the timelines realistic and also care has to be taken to ensure the plan aligns with overall objectives of the organization.

After the strategic plan is developed, information should be gathered to ensure all aspects of the CSIRT team is covered based on the types of policies formulated, types of threats assessed and the services that are to be offered. The team will have to be picked based on the information at this stage.

Once the team is aligned and the vision is set, the vision of this team and its operations will have to be communicated within the organization to bring about an awareness on what this team could do.

Post the organizational wide announcement and policy implementation, the team goes live into operations and implements all the guidelines and procedures thereby serving the organization.

References:

Fuertes, W., Reyes, F., Valladares, P., Tapia, F., Toulkeridis, T., & Pérez, E. (2017). An Integral Model to Provide Reactive and Proactive Services in an Academic CSIRT Based on Business Intelligence. Systems, 5(4), 52. doi: 10.3390/systems5040052

Möller, K. (2007). Setting up a Grid‐CERT: experiences of an academic CSIRT. Campus-Wide Information Systems, 24(4), 260-270. doi: 10.1108/10650740710834644

Homework is Completed By:

Writer Writer Name Amount Client Comments & Rating
Instant Homework Helper

ONLINE

Instant Homework Helper

$36

She helped me in last minute in a very reasonable price. She is a lifesaver, I got A+ grade in my homework, I will surely hire her again for my next assignments, Thumbs Up!

Order & Get This Solution Within 3 Hours in $25/Page

Custom Original Solution And Get A+ Grades

  • 100% Plagiarism Free
  • Proper APA/MLA/Harvard Referencing
  • Delivery in 3 Hours After Placing Order
  • Free Turnitin Report
  • Unlimited Revisions
  • Privacy Guaranteed

Order & Get This Solution Within 6 Hours in $20/Page

Custom Original Solution And Get A+ Grades

  • 100% Plagiarism Free
  • Proper APA/MLA/Harvard Referencing
  • Delivery in 6 Hours After Placing Order
  • Free Turnitin Report
  • Unlimited Revisions
  • Privacy Guaranteed

Order & Get This Solution Within 12 Hours in $15/Page

Custom Original Solution And Get A+ Grades

  • 100% Plagiarism Free
  • Proper APA/MLA/Harvard Referencing
  • Delivery in 12 Hours After Placing Order
  • Free Turnitin Report
  • Unlimited Revisions
  • Privacy Guaranteed

6 writers have sent their proposals to do this homework:

Top Writing Guru
Top Essay Tutor
Finance Homework Help
Engineering Solutions
Engineering Help
Coursework Helper
Writer Writer Name Offer Chat
Top Writing Guru

ONLINE

Top Writing Guru

I will provide you with the well organized and well research papers from different primary and secondary sources will write the content that will support your points.

$40 Chat With Writer
Top Essay Tutor

ONLINE

Top Essay Tutor

As an experienced writer, I have extensive experience in business writing, report writing, business profile writing, writing business reports and business plans for my clients.

$40 Chat With Writer
Finance Homework Help

ONLINE

Finance Homework Help

I will provide you with the well organized and well research papers from different primary and secondary sources will write the content that will support your points.

$23 Chat With Writer
Engineering Solutions

ONLINE

Engineering Solutions

I have read your project description carefully and you will get plagiarism free writing according to your requirements. Thank You

$26 Chat With Writer
Engineering Help

ONLINE

Engineering Help

I am a professional and experienced writer and I have written research reports, proposals, essays, thesis and dissertations on a variety of topics.

$46 Chat With Writer
Coursework Helper

ONLINE

Coursework Helper

I will be delighted to work on your project. As an experienced writer, I can provide you top quality, well researched, concise and error-free work within your provided deadline at very reasonable prices.

$19 Chat With Writer

Let our expert academic writers to help you in achieving a+ grades in your homework, assignment, quiz or exam.

Similar Homework Questions

Short essay - Super's conception of life stages and development tasks - When is the irr rule unreliable - Romeo and juliet essay prompts 9th grade - Sheep eye dissection worksheet - Aqualisa quartz hbs case analysis - Yo yo ma necessary edges summary - Discussion - Discussion Board Stress Theory - Paper 300 words, with references and in text citations and needed plagiarism report - Shadow health mental health assessment - The fighting whities t shirt - Draft Statement of Teaching Philosophy - Guardian angel bus routes - Appalachian mountain club ct - Mighty to save chords - Difficult conversations how to discuss what matters most epub - Redox titration of hydrogen peroxide by potassium permanganate - ISI Article Summary 6 - New belgium brewing ethical and environmental responsibility case study - Effects of the crusades lesson plan - Friedman microwave store - Biology classification packet answer key - Emc powermax administration guide - What organelle does kartagener affect - Sap upgrade impact analysis - Major service with accompanying minor goods and services - Cyclohexylmethanol from grignard reagent - Where can i watch the grammar of happiness - Helping Teachers provide an Inclusive Environment in School for with Disabilities - What is the role of the kinetochores and the microtubules - Week 2 group discussion - Week 7 final research paper 832 - 6-8 min informative speech - Thermodynamics enthalpy of reaction and hess's law post lab answers - Aloe vera drink wiki - Cannot open self googledrivesync exe - I need a discussion done and a respond to 2 other classmate for my Recruit, develop, reward and retain - Chitling test answers - Primary objective of an investor in a company - Block style business letter template word - Woman drinks 3 gallons of water for wii - Entrance and exit are ____ - Discussion Social Problems - Plant and animal cells powerpoint 5th grade - 2.4 line of best fit worksheet answer key - Johns hopkins nursing evidence based practice rating scale - Iron 2 flame test - BUSINESS&ERP - 1 Page Book Response to book "Angela's Ashes" - Hawkes learning statistics cheat - New criticism powerpoint presentation - Ob gyn soap note template - Will these hands ne'er be clean - What is a non-linear narrative - Interpretive simulations hr management tips - Cadet centre for adventurous training - Wk 1 - Apply: Identifying and Mitigating Risks - Video questions for an inconvenient truth answers - Compare and contrast two mental health theories - Name and explain two types of prewriting weegy - How to draw a pond ecosystem - Pegged mortise and tenon - Starbucks mission social responsibility and brand strength - 15:00 in 12 hour time - Fedex and ups documentary - Pmbok guide fifth edition p343 - Which of the following statements is true about a computer - Aka south central region - Ac dc hokey pokey bob tom - Micro - Kansas city preventive patrol experiment findings - First they came in german - Operation Management - Management project - Must be 3 pages exact or more. ( DUE BY 15 HOURS) - Printable list of agatha christie books - Macbeth act 4 graphic organizer - Physics of diving into a pool - Les miserables plot diagram - Sports psychology activities for students - Composition of target market for lemonade - Read articles answer questions - Different southern american accents - Animal farm test review answers - Amazon times interest earned ratio - Ias 39 classification of financial assets - 5.9 8 explore network communications - AstroloGy bAbA 7340613399 OnLinE reaL VashIKaraN sPecIaLIsT IN Shivamogga - Common multiples of 6 and 7 - Mabel park high school uniform shop - According to duska, what two things does a business do in the free enterprise system? - Ffa code of conduct - Jeppesen chart index number meaning - Ib math hl formula booklet - Blockchain has made a significant impact on businesses and industries - Stone cross surgery eastbourne - Confessions and Admissions after a Request for a Lawyer - Module 6 project economics - Paper