Incident identification
What defines an incident?
Sources of incident notification
End users
Log sources
Things to look out for
Allow room for identifying new incidents
Maintain scope and focus
How incidents are detected
PreviousIncident Response assets inventory and identificationNextIncident Response classification levels
Last updated