Security incidents are inevitable, but how they’re dealt with can make or break an organization. Poor incident response negatively affects business practices, including workflow, revenue generation, and public image.
The incident response of most organizations is ad hoc at best. A formal management plan is rarely developed or adhered to, resulting in ineffective firefighting responses and inefficient allocation of resources.
Our Advice
Critical Insight
- Embrace the use of ready-made responses when handling incidents. These pre-established response plans can save valuable time and effort during a crisis. By relying on proven and tested procedures, your team can respond swiftly and efficiently, minimizing the impact of incidents and ensuring a consistent approach to resolving security breaches.
- Analyze, track, and review results of incident response regularly. Without a comprehensive understanding of incident trends and patterns, you can be revictimized by the same attack vector.
- Establish communication processes and channels well in advance of a crisis. Don’t wait until a state of panic. Collaborate and exchange information with other organizations to stay ahead of incoming threats.
Impact and Result
- Effective and efficient management of incidents involves a formal process of preparation, detection, analysis, containment, eradication, recovery, and post-incident activities.
- This blueprint will walk through the steps of developing a scalable and systematic incident response program relevant to your organization.
Member Testimonials
After each Info-Tech experience, we ask our members to quantify the real-time savings, monetary impact, and project improvements our research helped them achieve. See our top member experiences for this blueprint and what our clients have to say.
9.4/10
Overall Impact
$104,742
Average $ Saved
42
Average Days Saved
Client
Experience
Impact
$ Saved
Days Saved
Pitt County
Guided Implementation
10/10
$30,549
10
Uganda Revenue Authority
Guided Implementation
10/10
$12,999
105
Willingness to provide guidance and followup
Opal Packaging
Guided Implementation
10/10
N/A
20
Robert is very knowledgeable providing practical advice and guidance. The facilitation of the tabletop exercise was a beneficial exercise to comple... Read More
Pitt County
Guided Implementation
10/10
$18,849
10
Keeneland Association
Guided Implementation
10/10
$2,469
2
Frank presented the materials very professioinally and shared some content he'd done for a client to help us continue down the project path.
Dunn‐Edwards Corporation
Guided Implementation
10/10
$64,999
50
Working Petar, who brings a lot of knowledge, experience, and advise throughout the IR process. The tools provided were also fantastic, with very l... Read More
The Corporation of the City of Sault Ste. Marie
Workshop
10/10
$75,000
110
The entire process was excellent and very informative. There was NO worst part. Thanks
CPA Alberta
Guided Implementation
8/10
$10,000
5
Best was the general guidance and lessons learned from others on our incident response, structure of the table top exercise, and dealing with insur... Read More
California Department of Housing & Community Development
Workshop
10/10
$129K
115
Andy Riley was extremely knowledgeable and we learned a great deal from him. We were able to produce tangible results and deliverables which will h... Read More
County of Franklin
Guided Implementation
10/10
$2,599
20
Shastri is a great resource and was very helpful during the entire process. I have no complaints.
Kappa Delta Sorority
Guided Implementation
10/10
$12,999
60
Working with Shastri was the best part of my experience. The knowledge and the willingness to help me prepare a plan that meets our internal team w... Read More
Charlotte County Clerk of the Circuit Court and County Comptroller
Workshop
10/10
N/A
110
We only have the best to say about our experience with Info-Tech and Frank Sargent on our workshop. Frank was engaging and walked us through all a... Read More
Osage Casinos
Guided Implementation
10/10
$14,949
20
Fritz Jean-Louis was amazing and really helped to guide me through the difficult process of developing and implementing a security incident managem... Read More
RJRGLEANER Communications Group
Guided Implementation
9/10
N/A
26
Best - Dr. Michel was knowledgeable, flexible and willing to work with us during the guided implementation. He provided many scenarios and additio... Read More
Asian Development Bank
Guided Implementation
9/10
N/A
N/A
Advice was very clear and Dang was found to be very informative and advanced on the subject.
The Corporation of the City of Timmins
Guided Implementation
10/10
$10,000
20
Shastri was a great coach and mentor during the project - he has a lot of real world experience and helpful guidance. Worst part was the sheer am... Read More
Government of Bermuda
Workshop
8/10
$389K
110
Best - SANDY and FRANK!!!; getting everyone together; understanding how things are currently done and/or will be done; identifying how our work wil... Read More
New-Indy Containerboard, LLC
Guided Implementation
10/10
$2,469
9
Noramco, LLC
Guided Implementation
10/10
$59,849
10
The advisor is so well knowledgeable and versed in the topic and i truly appreciate that. I don't have any neg thing to say.
Pekin Insurance
Workshop
9/10
$61,749
20
Sandy Silk did a great job of conducting the workshop. She was organized and customized the workshop in ways that most help our incident response ... Read More
4Wall Entertainment
Workshop
10/10
$18,269
5
Sandy was an excellent facilitator and did a great job getting the team to open up and discuss the topics at hand. She also has a ton of experience... Read More
County Of Kenosha
Workshop
8/10
$12,999
20
The tabletop exercise was very valuable to illustrate the importance of a structured response.
ENERGYUNITED ELECTRIC MEMBERSHIP CORPORATION
Workshop
10/10
$1.3M
120
The best part of our experience was in the second table-top exercise that included representation from key business stakeholders. This exercise was... Read More
Healthcare Excellence Canada
Guided Implementation
8/10
N/A
5
no worst parts; getting a second perspective is always helpful.
Corix Infrastructure Inc.
Guided Implementation
10/10
$37,500
20
It was a great experience and a great way to assist Corix in accomplishing a goal amidst a number of competing initiatives. Thank you Logan for al... Read More
Afreximbank
Guided Implementation
8/10
$23,500
110
Overall a very good experience
Jet Support Services, Inc.
Workshop
10/10
$12,599
20
Logan and Kevin were great to work with
The Regional Municipality Of Niagara
Workshop
7/10
N/A
50
There was a lot of attention for me to drive the engagement, as well the consultant's that were assigned to us did not engage the group at times, s... Read More
Saskatchewan Blue Cross
Guided Implementation
8/10
N/A
5
The resources provided are quite useful.
Hyperloop Technologies, Inc.
Workshop
10/10
$37,199
20
I don't believe there were an worst parts, however, it's been almost 2 months since the engagement so I don't really remember. Overall I felt it w... Read More
Workshop: Develop and Implement a Security Incident Management Program
Workshops offer an easy way to accelerate your project. If you are unable to do the project yourself, and a Guided Implementation isn't enough, we offer low-cost delivery of our project workshops. We take you through every phase of your project and ensure that you have a roadmap in place to complete your project successfully.
Module 1: Prepare Your Incident Response Program
The Purpose
- Understand the purpose of incident response.
- Formalize the program.
- Identify key players and escalation points.
Key Benefits Achieved
- Common understanding of the importance of incident response.
- Various business units becoming aware of their roles in the incident management program.
- Formalized documentation.
Activities
Outputs
Assess the current process, obligations, scope, and boundaries of the incident management program.
- Understanding of the incident landscape
Identify key players for the response team and for escalation points.
- An identified incident response team
Formalize documentation.
- A security incident management charter
- A security incident management policy
Prioritize incidents requiring preparation.
- A list of top-priority incidents
- A general security incident management plan
- A security incident response RACI chart
Module 2: Develop Incident-Specific Runbooks
The Purpose
- Document the clear response procedures for top-priority incidents.
Key Benefits Achieved
- As incidents occur, clear response procedures are documented for efficient and effective recovery.
Activities
Outputs
For each top-priority incident, document the workflow from detection through analysis, containment, eradication, recovery, and post-incident analysis.
- Up to five incident-specific runbooks
Module 3: Maintain and Optimize the Program
The Purpose
- Ensure the response procedures are realistic and effective.
- Identify key metrics to measure the success of the program.
Key Benefits Achieved
- Real-time run-through of security incidents to ensure roles and responsibilities are known.
- Understanding of how to measure the success of the program.
Activities
Outputs
Limited scope tabletop exercise.
- Completed tabletop exercise
Discuss key metrics.
- Key success metrics identified