• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

通过网络事件应对演练来建立能力和社区。

Building capability and community through cyber-incident response exercises.

机构信息

Stanford University.

出版信息

J Bus Contin Emer Plan. 2024 Jan 1;18(1):49-58.

PMID:39164864
Abstract

While a natural disaster or related threat may impact an organisation at some point, it is more likely (even inevitable) that it will be the victim of a cyber attack. The solution to being better prepared for these imminent attacks is to undertake more lightweight and frequent incident response (IR) exercises to help build capabilities and community through a tighter, recurring cycle of planning, conducting and assessing. To boost the facilitation of IR exercises, organisations must leverage the established relationships between business continuity management (BCM) or resilience staff (both of which are familiar with business continuity and disaster recovery exercises), and their information security office. As BCM will ultimately be involved in response and recovery after a cyber attack, it is intuitively more effective to collaborate with BCM in advance. Indeed, it has been substantiated that BCM engagement improves incident response time and reduces incident response costs. This paper concludes that involving BCM or resilience departments in IR exercises contributes to more effective responses to actual incidents.

摘要

虽然自然灾害或相关威胁可能在某个时候影响到组织,但更有可能(甚至不可避免)的是,组织将成为网络攻击的受害者。为了更好地为这些迫在眉睫的攻击做好准备,解决办法是进行更多轻量级和频繁的事件响应(IR)演练,通过更紧密、定期的规划、执行和评估周期来帮助建立能力和社区。为了促进 IR 演练的顺利进行,组织必须利用业务连续性管理(BCM)或弹性部门(两者都熟悉业务连续性和灾难恢复演练)与其信息安全办公室之间已经建立的关系。由于 BCM 将最终参与网络攻击后的响应和恢复,因此预先与 BCM 合作更具直观效果。事实上,已经证实,BCM 的参与可以提高事件响应时间并降低事件响应成本。本文得出的结论是,让 BCM 或弹性部门参与 IR 演练有助于对实际事件做出更有效的响应。

相似文献

1
Building capability and community through cyber-incident response exercises.通过网络事件应对演练来建立能力和社区。
J Bus Contin Emer Plan. 2024 Jan 1;18(1):49-58.
2
Breaking down silos between business continuity and cyber security.打破业务连续性与网络安全之间的壁垒。
J Bus Contin Emer Plan. 2019 Jan 1;12(3):224-232.
3
Building organisational cyber resilience: A strategic knowledge-based view of cyber security management.构建组织的网络弹性:基于战略知识的网络安全管理视角
J Bus Contin Emer Plan. 2015;9(2):185-95.
4
Strategic dilemmas when managing cyber attacks.管理网络攻击时的战略困境。
J Bus Contin Emer Plan. 2024 Jan 1;17(4):323-335.
5
Cyber security: a critical examination of information sharing versus data sensitivity issues for organisations at risk of cyber attack.网络安全:对面临网络攻击风险的组织在信息共享与数据敏感性问题方面的批判性审视。
J Bus Contin Emer Plan. 2013;7(2):103-11.
6
Airline business continuity and IT disaster recovery sites.航空公司业务连续性和信息技术灾难恢复站点。
J Bus Contin Emer Plan. 2016 Spring;9(3):228-38.
7
The synergy needed for business resilience.业务韧性所需的协同作用。
J Bus Contin Emer Plan. 2015 Autumn;9(1):10-7.
8
Exercising cyber resilience: The Finnish experience.锻炼网络弹性:芬兰的经验。
J Bus Contin Emer Plan. 2022 Jan 1;15(3):277-283.
9
Development and implementation of a business continuity management risk index.业务连续性管理风险指数的开发与实施
J Bus Contin Emer Plan. 2014;8(3):238-51.
10
Redefining cyber resilience : Through the risk register lens.重新定义网络弹性:从风险登记簿的视角。
J Bus Contin Emer Plan. 2024 Jan 1;18(1):75-83.