Security incidents are inevitable, but how they’re dealt with can make or break an organization. Poor incident response negatively affects business practices, including workflow, revenue generation, and public image.
The incident response of most organizations is ad hoc at best. A formal management plan is rarely developed or adhered to, resulting in ineffective firefighting responses and inefficient allocation of resources.
Our Advice
Critical Insight
- Embrace the use of ready-made responses when handling incidents. These pre-established response plans can save valuable time and effort during a crisis. By relying on proven and tested procedures, your team can respond swiftly and efficiently, minimizing the impact of incidents and ensuring a consistent approach to resolving security breaches.
- Analyze, track, and review results of incident response regularly. Without a comprehensive understanding of incident trends and patterns, you can be revictimized by the same attack vector.
- Establish communication processes and channels well in advance of a crisis. Don’t wait until a state of panic. Collaborate and exchange information with other organizations to stay ahead of incoming threats.
Impact and Result
- Effective and efficient management of incidents involves a formal process of preparation, detection, analysis, containment, eradication, recovery, and post-incident activities.
- This blueprint will walk through the steps of developing a scalable and systematic incident response program relevant to your organization.
Member Testimonials
After each Info-Tech experience, we ask our members to quantify the real-time savings, monetary impact, and project improvements our research helped them achieve. See our top member experiences for this blueprint and what our clients have to say.
9.6/10
Overall Impact
$42,316
Average $ Saved
31
Average Days Saved
Client
Experience
Impact
$ Saved
Days Saved
Meritrust Federal Credit Union
Workshop
10/10
$34,250
20
Horia was great to work with on this project.
UMWA Health and Retirement Funds
Guided Implementation
10/10
$2,603
10
I really enjoyed the interactive nature of the assistance through the case.
The President and Fellows of Harvard College, a Massachusetts nonprofit corporation, acting by and through Harvard Business School
Guided Implementation
10/10
N/A
20
Mike was awesome. He was able to help us think through how we could apply your blueprints to existing process, and was also a great sounding board... Read More
First Frame Networkers AG
Guided Implementation
9/10
$10,000
10
State of Nevada Office of the Chief Information Officer
Guided Implementation
10/10
$13,700
10
United Nations International Computing Centre
Guided Implementation
9/10
$21,920
14
Mike was able to immediately address our needs by providing straight to the point assistance. I would be happy to get help again in the future.
The American Institute of Architects
Workshop
10/10
$34,250
10
A big thank you to Horia for the outstanding job facilitating the security incident workshop and tabletop exercise. Your expertise and guidance mad... Read More
The City of Daytona Beach
Guided Implementation
10/10
$68,500
23
Petars insight into security and governance has really made a difference in our posture and preparedness. We can purchase solutions all day but not... Read More
Bob Barker Company, Inc.
Guided Implementation
10/10
$34,250
10
Petar Hristov did a phenomenal job of walking us through the Develop and Implement a Security Incident Management Program. His advice was extremely... Read More
Enable Ireland
Guided Implementation
10/10
$2,959
5
It was easy to engage with InfoTech. Also the security management blueprint from InfoTech was the closest to my requirements.
College of DuPage
Guided Implementation
9/10
$12,330
14
It's all laid out for you and ready to modify as needed. Our SME was very knowledgeable and patient with our team.
Government of the United States Virgin Islands
Workshop
9/10
N/A
35
The best parts of the experience was the customization of the workshop to meet our needs. This was accomplished through preparatory calls as well ... Read More
TANTUS Solutions Group Inc
Guided Implementation
8/10
$1,700
2
Intercity Transit
Guided Implementation
10/10
$34,250
10
The personal connection with an analyst.
Guelph Police Services
Workshop
9/10
$50,000
14
The best part was coming together as a consortium and forcing ourselves, with Horia's assistance to dedicate the time to complete this incredibly i... Read More
Pitt County
Guided Implementation
10/10
$32,195
10
Uganda Revenue Authority
Guided Implementation
10/10
$13,700
105
Willingness to provide guidance and followup
Opal Packaging
Guided Implementation
10/10
N/A
20
Robert is very knowledgeable providing practical advice and guidance. The facilitation of the tabletop exercise was a beneficial exercise to comple... Read More
Pitt County
Guided Implementation
10/10
$19,865
10
Keeneland Association
Guided Implementation
10/10
$2,603
2
Frank presented the materials very professioinally and shared some content he'd done for a client to help us continue down the project path.
Dunn‐Edwards Corporation
Guided Implementation
10/10
$68,500
50
Working Petar, who brings a lot of knowledge, experience, and advise throughout the IR process. The tools provided were also fantastic, with very l... Read More
The Corporation of the City of Sault Ste. Marie
Workshop
10/10
$75,000
110
The entire process was excellent and very informative. There was NO worst part. Thanks
CPA Alberta
Guided Implementation
8/10
$10,000
5
Best was the general guidance and lessons learned from others on our incident response, structure of the table top exercise, and dealing with insur... Read More
California Department of Housing & Community Development
Workshop
10/10
$129K
115
Andy Riley was extremely knowledgeable and we learned a great deal from him. We were able to produce tangible results and deliverables which will h... Read More
County of Franklin
Guided Implementation
10/10
$2,599
20
Shastri is a great resource and was very helpful during the entire process. I have no complaints.
Kappa Delta Sorority
Guided Implementation
10/10
$12,999
60
Working with Shastri was the best part of my experience. The knowledge and the willingness to help me prepare a plan that meets our internal team w... Read More
Charlotte County Clerk of the Circuit Court and County Comptroller
Workshop
10/10
N/A
110
We only have the best to say about our experience with Info-Tech and Frank Sargent on our workshop. Frank was engaging and walked us through all a... Read More
Osage Casinos
Guided Implementation
10/10
$14,949
20
Fritz Jean-Louis was amazing and really helped to guide me through the difficult process of developing and implementing a security incident managem... Read More
RJRGLEANER Communications Group
Guided Implementation
9/10
N/A
26
Best - Dr. Michel was knowledgeable, flexible and willing to work with us during the guided implementation. He provided many scenarios and additio... Read More
Asian Development Bank
Guided Implementation
9/10
N/A
N/A
Advice was very clear and Dang was found to be very informative and advanced on the subject.
Workshop: Develop and Implement a Security Incident Management Program
Workshops offer an easy way to accelerate your project. If you are unable to do the project yourself, and a Guided Implementation isn't enough, we offer low-cost delivery of our project workshops. We take you through every phase of your project and ensure that you have a roadmap in place to complete your project successfully.
Module 1: Prepare Your Incident Response Program
The Purpose
- Understand the purpose of incident response.
- Formalize the program.
- Identify key players and escalation points.
Key Benefits Achieved
- Common understanding of the importance of incident response.
- Various business units becoming aware of their roles in the incident management program.
- Formalized documentation.
Activities
Outputs
Assess the current process, obligations, scope, and boundaries of the incident management program.
- Understanding of the incident landscape
Identify key players for the response team and for escalation points.
- An identified incident response team
Formalize documentation.
- A security incident management charter
- A security incident management policy
Prioritize incidents requiring preparation.
- A list of top-priority incidents
- A general security incident management plan
- A security incident response RACI chart
Module 2: Develop Incident-Specific Runbooks
The Purpose
- Document the clear response procedures for top-priority incidents.
Key Benefits Achieved
- As incidents occur, clear response procedures are documented for efficient and effective recovery.
Activities
Outputs
For each top-priority incident, document the workflow from detection through analysis, containment, eradication, recovery, and post-incident analysis.
- Up to five incident-specific runbooks
Module 3: Maintain and Optimize the Program
The Purpose
- Ensure the response procedures are realistic and effective.
- Identify key metrics to measure the success of the program.
Key Benefits Achieved
- Real-time run-through of security incidents to ensure roles and responsibilities are known.
- Understanding of how to measure the success of the program.
Activities
Outputs
Limited scope tabletop exercise.
- Completed tabletop exercise
Discuss key metrics.
- Key success metrics identified