Recovery activities and progress in restoring operational capabilities are communicated to designated internal and external stakeholders
原文语言:英语
菜单
这个仓库中的 skills
SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。
CyberStrikeus/CyberStrike已展示 40 / 7,442 个已收集 Skill。
Recovery activities and progress in restoring operational capabilities are communicated to designated internal and external stakeholders
原文语言:英语
Public updates on incident recovery are shared using approved methods and messaging
原文语言:英语
Recovery plans incorporate lessons learned
原文语言:英语
Recovery strategies are updated
原文语言:英语
The recovery portion of the incident response plan is executed once initiated from the incident response process
原文语言:英语
Recovery actions are selected, scoped, prioritized, and performed
原文语言:英语
The integrity of backups and other restoration assets is verified before using them for restoration
原文语言:英语
Critical mission functions and cybersecurity risk management are considered to establish post-incident operational norms
原文语言:英语
The integrity of restored assets is verified, systems and services are restored, and normal operating status is confirmed
原文语言:英语
The end of incident recovery is declared based on criteria, and incident-related documentation is completed
原文语言:英语
Improvements
原文语言:英语
Investigations are conducted to ensure effective response and support forensics and recovery activities
原文语言:英语
Responses to detected cybersecurity incidents are managed
原文语言:英语
Activities are performed to prevent expansion of an event and mitigate its effects
原文语言:英语
Response Planning
原文语言:英语
Notifications from detection systems are investigated
原文语言:英语
The impact of the incident is understood
原文语言:英语
Analysis is performed to establish what has taken place during an incident and the root cause of the incident
原文语言:英语
Incidents are categorized consistent with response plans
原文语言:英语
Processes are established to receive, analyze and respond to vulnerabilities disclosed to the organization from internal and external sources (e.g.
原文语言:英语
Actions performed during an investigation are recorded, and the records' integrity and provenance are preserved
原文语言:英语
Incident data and metadata are collected, and their integrity and provenance are preserved
原文语言:英语
An incident's magnitude is estimated and validated
原文语言:英语
Personnel know their roles and order of operations when a response is needed
原文语言:英语
Internal and external stakeholders are notified of incidents
原文语言:英语
Information is shared with designated internal and external stakeholders
原文语言:英语
Coordination with stakeholders occurs consistent with response plans
原文语言:英语
Voluntary information sharing occurs with external stakeholders to achieve broader cybersecurity situational awareness
原文语言:英语
Response plans incorporate lessons learned
原文语言:英语
Response strategies are updated
原文语言:英语
The incident response plan is executed in coordination with relevant third parties once an incident is declared
原文语言:英语
Incident reports are triaged and validated
原文语言:英语
Incidents are categorized and prioritized
原文语言:英语
Incidents are escalated or elevated as needed
原文语言:英语
The criteria for initiating incident recovery are applied
原文语言:英语
Incidents are contained
原文语言:英语
Incidents are eradicated
原文语言:英语
Newly identified vulnerabilities are mitigated or documented as accepted risks
原文语言:英语
Response plan is executed during or after an incident
原文语言:英语
Access Enforcement
原文语言:英语