Incident Response Methodology - Windows Intrusion Detection
Incident Response Methodology - Windows Intrusion Detection
For my first series of posts I thought I'd dive into the Incident Response
Methodology playbook compiled by Societe Generale. Their material on incident
response is amazing and worth reviewing to improve and enhance your own IR
workflows.
This Incident Response Methodology is a cheat sheet dedicated to incident
handlers investigating a precise security issue.
Who should use IRM sheets?
• Administrators
• Security Operation Center
• CISOs and deputies
• CERTs (Computer Emergency Response Team)
Disclaimer
Terms of Use
Any information read or acted upon that is found in part or in entirety on this
blog are subject to the terms of use. You are reading this blog of your own free
will. Any recommendations, links clicked, or content you consume from this site
is of your own personal choice. Reading this blog and applying any of the
content is done so at your own risk.