Level: Low tech

Abstract:
How to go about implementing an Incident response and recording system in smaller organizations. Focus will be on creating a system that can handle large number of incidents without the need to hire a separate team and minimize impact on current internal experts.
What will be covered:

  • How to define goals of a Incident response system
  • What should be included in a incident “event” ticket
  • How to integrate incident response into existing internal expert teams
  • How to learn from your incidents
  • What NIS2/ZInfV1 require (or how to report the really bad cybersecurity incidents)

Bio:
Dino Memović – DevOps, sysadmin nowadays mostly in charge of cybersecurity and ISO 27001 implementation. Talk is mostly based on multi-year handling of incident response.

Comments are closed.