Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works

Establishing Scope of CERT/CSIRT

  • Please log in to reply




  • Member
  • PipPip
  • 52 posts
Good Day to all. I hope you are fine and doing well.

I need your help about the Establishing the CERT/CSIRT

I am in phase of planning the CERT Process and Team. I will appreciate if you can help me for the following questions:

1. What Scope the CERT should have ideally it should address the incidents related to the information security i.e. Confidentiality/Integrity/Availability, but what will be the role of CERT in case of Physical Security Breach or Theft of Critical Hardware?

2. Should CSIRT also come in action in case of any IT Security Policy violation for example Pornography although it does not hit the three pillars of the IT Security CIA but it is against the company policy so who is going to take care of such policy violation?

3. How can I define the categorize incidents levels should I do it at high level for example DoS Attack, Hacking, Virus and Malicious Program and Unauthorized Access to Information or I should be more specific and define each incident in detail.
  • 0




    Je suis Napoléon!

  • Administrator
  • 26,018 posts
  • MVP
i've recently had to do some of the same process here at work

i found a lot of good info here http://www.iwar.org.uk/comsec/
  • 0

Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP