Recovery activities and progress in restoring operational capabilities are communicated to designated internal and external stakeholders
لغة النص الأصلي: الإنجليزية
القائمة
Skills في هذا المستودع
جمع SkillsMP عدد ٧٬٤٤٢ من skills من CyberStrikeus/CyberStrike. افتح أي skill لمراجعة مصدره وتفاصيله.
CyberStrikeus/CyberStrikeعرض ٤٠ من أصل ٧٬٤٤٢ skills مجمعة.
Recovery activities and progress in restoring operational capabilities are communicated to designated internal and external stakeholders
لغة النص الأصلي: الإنجليزية
Public updates on incident recovery are shared using approved methods and messaging
لغة النص الأصلي: الإنجليزية
Recovery plans incorporate lessons learned
لغة النص الأصلي: الإنجليزية
Recovery strategies are updated
لغة النص الأصلي: الإنجليزية
The recovery portion of the incident response plan is executed once initiated from the incident response process
لغة النص الأصلي: الإنجليزية
Recovery actions are selected, scoped, prioritized, and performed
لغة النص الأصلي: الإنجليزية
The integrity of backups and other restoration assets is verified before using them for restoration
لغة النص الأصلي: الإنجليزية
Critical mission functions and cybersecurity risk management are considered to establish post-incident operational norms
لغة النص الأصلي: الإنجليزية
The integrity of restored assets is verified, systems and services are restored, and normal operating status is confirmed
لغة النص الأصلي: الإنجليزية
The end of incident recovery is declared based on criteria, and incident-related documentation is completed
لغة النص الأصلي: الإنجليزية
Improvements
لغة النص الأصلي: الإنجليزية
Investigations are conducted to ensure effective response and support forensics and recovery activities
لغة النص الأصلي: الإنجليزية
Responses to detected cybersecurity incidents are managed
لغة النص الأصلي: الإنجليزية
Activities are performed to prevent expansion of an event and mitigate its effects
لغة النص الأصلي: الإنجليزية
Response Planning
لغة النص الأصلي: الإنجليزية
Notifications from detection systems are investigated
لغة النص الأصلي: الإنجليزية
The impact of the incident is understood
لغة النص الأصلي: الإنجليزية
Analysis is performed to establish what has taken place during an incident and the root cause of the incident
لغة النص الأصلي: الإنجليزية
Incidents are categorized consistent with response plans
لغة النص الأصلي: الإنجليزية
Processes are established to receive, analyze and respond to vulnerabilities disclosed to the organization from internal and external sources (e.g.
لغة النص الأصلي: الإنجليزية
Actions performed during an investigation are recorded, and the records' integrity and provenance are preserved
لغة النص الأصلي: الإنجليزية
Incident data and metadata are collected, and their integrity and provenance are preserved
لغة النص الأصلي: الإنجليزية
An incident's magnitude is estimated and validated
لغة النص الأصلي: الإنجليزية
Personnel know their roles and order of operations when a response is needed
لغة النص الأصلي: الإنجليزية
Internal and external stakeholders are notified of incidents
لغة النص الأصلي: الإنجليزية
Information is shared with designated internal and external stakeholders
لغة النص الأصلي: الإنجليزية
Coordination with stakeholders occurs consistent with response plans
لغة النص الأصلي: الإنجليزية
Voluntary information sharing occurs with external stakeholders to achieve broader cybersecurity situational awareness
لغة النص الأصلي: الإنجليزية
Response plans incorporate lessons learned
لغة النص الأصلي: الإنجليزية
Response strategies are updated
لغة النص الأصلي: الإنجليزية
The incident response plan is executed in coordination with relevant third parties once an incident is declared
لغة النص الأصلي: الإنجليزية
Incident reports are triaged and validated
لغة النص الأصلي: الإنجليزية
Incidents are categorized and prioritized
لغة النص الأصلي: الإنجليزية
Incidents are escalated or elevated as needed
لغة النص الأصلي: الإنجليزية
The criteria for initiating incident recovery are applied
لغة النص الأصلي: الإنجليزية
Incidents are contained
لغة النص الأصلي: الإنجليزية
Incidents are eradicated
لغة النص الأصلي: الإنجليزية
Newly identified vulnerabilities are mitigated or documented as accepted risks
لغة النص الأصلي: الإنجليزية
Response plan is executed during or after an incident
لغة النص الأصلي: الإنجليزية
Access Enforcement
لغة النص الأصلي: الإنجليزية