Review of Human Decision-making during Computer Security Incident Analysis


연구 분야: Safety



학회: Digital Threats: Research and Practice , Volume 2, Issue 2


초록

We review practical advice on decision-making during computer security incident response. Scope includes standards from the IETF, ISO, FIRST, and the US intelligence community. To focus on human decision-making, the scope is the evidence collection, analysis, and reporting phases of response, which includes human decision-making within and connecting these phases. The results indicate both strengths and gaps. A strength is available advice on how to accomplish many specific tasks. However, there is little guidance on how to prioritize tasks in limited time or how to interpret, generalize, and convincingly report results. Future work should focus on these gaps in explication and specification of decision-making during incident analysis.


Author Profile
Jonathan M Spring

University College London London

정보 없음
Author Profile
Phyllis Illari

University College London London

정보 없음

📄 논문 정보

발행 연도 2021년
인용수 14
출판 국가
사이트 ACM
좋아요 수 0

연관 논문 목록 (322건)