Incident Response and its role in Protecting Critical Infrastructures
- Dr. Kaleem Ahmed Usmani
Incident Response and its role in Protecting Critical - - PowerPoint PPT Presentation
Incident Response and its role in Protecting Critical Infrastructures Dr. Kaleem Ahmed Usmani Officer-In-Charge, Computer Emergency Response Team of Mauritius (CERT-MU) Presentation Outline What CERT-MU does? Critical Infrastructures
2
3
Internet Service Providers Academia ICT Vendors Media Law Enforcement Agencies Home Users International CERTs
providers 4
4
5
5
Proactive Services:
6
6
7
7
▫ CERT-IN, JPCERT/CC, AfricaCERT, KISA, US CERT,
▫ International Multilateral Partnership Against Cyber
▫ Anti-Phishing Working Group (APWG), Team Cymru ▫ Private security vendors such as Symantec, IBM,
▫ Affiliated with CERT/CC ▫ Affiliated with Forum of Incident Response and
8
9
10
11
12
Critical Sectors
1
Energy
2
ICT & Broadcasting
3
Financial Services
4
Transport & Logistics (inc. sea and air)
5
Tourism
6
Health
7
Government Services
8
Manufacturing
9
Water
10
Customs
11
Sugar
across the CIIs
for co-ordination of information security incident resolution.
about incidents and lessons learned among operators within and across critical sectors.
exercises for large scale networks security incident response and disaster recovery.
21
22
WHAT TO KNOW FIRST:
– An incident is an adverse event (or threat of an adverse event) in a computer system – Adverse events include the following general categories:
23
INCIDENTS HAPPEN ALL AROUND US:
24
25
Information security risks cause:
26
27
Preparation Identification Containment Analysis & Eradication Recovery Follow up
Plan PRIOR to Incident Determine what is/has happened
Limit incident
Determine and remove root cause Return operations to normal Process improvement: Plan for the future
28
29
– Management's responsibilities include ensuring that:
distributed, and followed
incident response duties
progress
tools, hardware and technical personnel are available
30
Why FORM AN INCIDENT RESPOSNE TEAM:
31
32