This document summarizes key aspects of cybersecurity incident response based on a chapter from the textbook "Protecting National Infrastructure". It discusses the importance of both front-loaded prevention and back-loaded recovery in incident response processes. It also covers the roles of incident response teams, forensic analysis, disaster recovery planning, and national response program coordination. Maintaining situational awareness is highlighted as important for understanding an organization's security posture and risk levels over time.