IR PROCESSPREPARE DETECT ANALYZE CONTAIN RECOVERPOST MORTEM
Wim Remes - email@example.comC,I A RC,I R,A C,IR C,I AExternal CommunicationsInitiate IR ProcessCollect EvidenceIR RACI
TECHNOLOGYbecause you don’t go to war in a speedo ...
TECHNOLOGY(it’s pretty basic really ...)a. Segment your network !!b. Use PGP (and train your people to use it)c. Log everything you could possibly needd. Full network captures are helpful!e. How far can you take FOSS?f. Complement with commercial products.g. Train, train, train, train, train, train,...(some demos)Wim Remes - firstname.lastname@example.org
TRAINING & TESTWim Remes - email@example.com
In a real war you don’t fight soldiers withcleaning ladies, you fight with soldiers. In acyberwar, you fight hackers with hackers.“”Thank youWim Remes - firstname.lastname@example.org