32.9k views
5 votes
Match each item with a statement below. A CSIRT staffing model where an organization performs all its IR work Answer 1 A CSIRT staffing model used when an organization does not have enough qualified employees Answer 2 Equipment needed to detect and manage incidents Answer 3 An incident response philosophy that focuses on the defense of data and systems Answer 4 An incident response philosophy that focuses on the identification and apprehension of the intruder Answer 5 Examples of this are monitoring security-related mailing lists and researching new rootkits that are publicly available Answer 6 Measurement used for comparison of past security measures and current CSIRT efforts Answer 7 Should be included in the announcement of an operational CSIRT Answer 8 A critical nontechnical skill for CSIRT members.

User Jakemmarsh
by
5.5k points

1 Answer

6 votes

Answer:

1. Employees.

2. Fully outsourced.

3. Packet sniffer.

4. Protect and forget.

5. Apprehend and prosecute.

6. Technology watch.

7. Response time.

8. Operating hours.

9. Teamwork.

Step-by-step explanation:

CSIRT is an acronym for Computer Security Incident Response Team and it typically comprises of IT professionals who are saddled with the responsibility of detecting, exposing, prevention, maintenance and coordination of cyber attacks in an organization.

The following are terms associated with the CSIRT model;

1. A CSIRT staffing model where an organization performs all its IR work: Employees.

2. A CSIRT staffing model used when an organization does not have enough qualified employees: Fully outsourced.

3. Equipment needed to detect and manage incidents: Packet sniffer.

4. An incident response philosophy that focuses on the defense of data and systems: Protect and forget.

5. An incident response philosophy that focuses on the identification and apprehension of the intruder: Apprehend and prosecute.

6. Examples of this are monitoring security-related mailing lists and researching new rootkits that are publicly available: Technology watch.

7. Measurement used for comparison of past security measures and current CSIRT efforts: Response time.

8. Should be included in the announcement of an operational CSIRT: Operating hours.

9. A critical nontechnical skill for CSIRT members: Teamwork.

User Oleg Barabanov
by
5.9k points