Livoa LogoLivoa
Incident Response Flow
Incident Response Solutions
https://incidentresponse.co.nz
Tasks
Phase 1


Preparation

Phase 2


Detection

Phase 2


Analysis

Phase 3


Containment

Phase 3


Eradication

Phase 3


Recovery

Phase 4


Post Incident Actions

Important Notice

References

CIRT Personnel
Playbook Activated
Schedule Stand Ups
Source of Incident Reporting
Notify Service Desk
Recording Incident Information
Alert CIRT of the cyber incident
Collect Incident Details
Review Incident Details

Confirm Incident Status

Document as Non-Incident
Confidential information assessment
Privacy Breach Response
Serious Harm Assessment
Contain the Incident
Review Evidence to Determine Impact of Incident
Prioritisation and Assessment
Confirm whether 3rd parties are involved
External Counsel/ Incident Response Firm assessment

Engage Incident Response Firm

Eradication

Recovery

Conduct Lessons Learned Session

xg

as

by asdfg

0
0 uses