Incident Response: What Happens on Day 2?

Wednesday
 
27
 
November
1:30 pm
 - 
2:10 pm

Speakers

Richard Dornhart

Richard Dornhart

National Security Practice Manager
Data#3

Synopsis

Every organisation will experience a Cyber Security Incident; how they respond will determine the impact. A good response requires a well-orchestrated plan, proper tools and visibility.

In this session, we will look at “Day 2”, what happens directly after your organisation has identified a security incident. We will share our experiences helping customers respond to incidents and best practices you can adopt to ensure you are "security incident ready”.

The presentation is focused on helping organisations reduce the time and cost of responding. Six areas are covered in depth: The components of an incident response plan, how to proactively prepare with your 3rd Parties and Partners, including key questions they will ask you, best practice for logging to ensure you have the correct information, 6-step plan for containment, How to be prepared for an how to manage communication during an incident, and finally how to manage your people during an incident.

Practical examples and suggested investment areas are provided to ensure organisations are ready for an incident.

Acknowledgement of Country

We acknowledge the traditional owners and custodians of country throughout Australia and acknowledge their continuing connection to land, waters and community. We pay our respects to the people, the cultures and the elders past, present and emerging.

Acknowledgement of Country