Coordinate incident handling activities involving supply chain events with other organizations involved in the supply chain.
Skills in this repository
CyberStrikeus/CyberStrike - Page 127
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Establish and maintain an integrated incident response team that can be deployed to any location identified by the organization in [organization-defin
Analyze malicious code and/or other residual artifacts remaining in the system after the incident.
Analyze anomalous or suspected adversarial behavior in or related to [organization-defined].
Establish and maintain a security operations center.
Manage public relations associated with an incident;
Include the following types of dynamic reconfiguration for [organization-defined] as part of the incident response capability: [organization-defined].
Identify [organization-defined] and take the following actions in response to those incidents to ensure continuation of organizational mission and bus
Correlate incident information and individual incident responses to achieve an organization-wide perspective on incident awareness and response.
Implement a configurable capability to automatically disable the system if [organization-defined] are detected.
Implement an incident handling capability for incidents involving insider threats.
Coordinate an incident handling capability for insider threats that includes the following organizational entities [organization-defined].
Coordinate with [organization-defined] to correlate and share [organization-defined] to achieve a cross-organization perspective on incident awareness
Employ [organization-defined] to respond to incidents.
Implement an incident handling capability for incidents that is consistent with the incident response plan and includes preparation, detection and ...
Track incidents and collect and analyze incident information using [organization-defined].
Track and document incidents.
Report incidents using [organization-defined].
Report system vulnerabilities associated with reported incidents to [organization-defined].
Provide incident information to the provider of the product or service and other organizations involved in the supply chain or supply chain governance
Require personnel to report suspected incidents to the organizational incident response capability within [organization-defined] ;
Establish a direct, cooperative relationship between its incident response capability and external providers of system protection capability;
Provide an incident response support resource, integral to the organizational incident response capability, that offers advice and assistance to users
Include the following in the Incident Response Plan for breaches involving personally identifiable information: A process to determine if notice to in
Develop an incident response plan that: Provides the organization with a roadmap for implementing its incident response capability; Describes the stru
Responsible Personnel
Provide information spillage response training [organization-defined].
Implement the following procedures to ensure that organizational personnel impacted by information spills can continue to carry out assigned tasks whi
Employ the following controls for personnel exposed to information not within assigned access authorizations: [organization-defined].
Respond to information spills by: Assigning [organization-defined] with responsibility for responding to information spills; Identifying the specific
Develop, document, and disseminate to [organization-defined]: [organization-defined] maintenance policy that: Procedures to facilitate the implementat
Record Content
Schedule, conduct, and document maintenance, repair, and replacement actions for the system using [organization-defined] ;
Schedule, document, and review records of maintenance, repair, and replacement on system components in accordance with manufacturer or vendor speci...
Inspect the maintenance tools used by maintenance personnel for improper or unauthorized modifications.
Check media containing diagnostic and test programs for malicious code before the media are used in the system.
Prevent the removal of maintenance equipment containing organizational information by: Verifying that there is no organizational information contained
Restrict the use of maintenance tools to authorized personnel only.
Monitor the use of maintenance tools that execute with increased privilege.
Inspect maintenance tools to ensure the latest software updates and patches are installed.