Blueprint: Build the Best in Cyber Defense cover image

Strategy 5: Prioritize Incident Response

Blueprint: Build the Best in Cyber Defense

00:00

How to Form a Technical Incident Response Capability

"What are the broad high level things that people need to think about in terms of forming a technical kind of incident response capability?" "There's a lot of different ways to approach this. As I often bias towards being very pragmatic about it, I think about SOPs and playbooks and pathways and routines and rhythms broken down by the functions of the sock that we've chosen to staff," he says. 'I would argue the sock may be better postured to more rapidly improving its capabilities'

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app