Cyber Incident Response Needs Dynamic Command Structure Instead of Static Guidelines

 

The SolarWinds cyberattack, which impacted over 18,000 entities, revealed that many organizations respond to breaches with disorganized, makeshift command centers. 

Kevin Mandia, CEO of Mandiant, recognized the 2020 attack on his own firm as the work of Russia’s SVR, noting the attackers’ sophistication and professionalism. He and other experts argue that with increasing regulatory pressure and reputational risk, this reactive approach is no longer adequate. Effective incident response requires a pre-established infrastructure for rapid action and collaboration among legal, technical, and executive teams. 

Cybersecurity experts observe that attackers often show more discipline and coordination than the companies they target. Many businesses have contacts ready but lack a systematic strategy for managing the fallout of a breach, such as regulatory filings, legal risks, and customer notifications. 

Anderson Lunsford, CEO of the incident response firm BreachRx, notes that dealing with regulators and auditors can often prove more difficult than managing the technical aspects of the breac

[…]
Content was cut in order to protect the source.Please visit the source for the rest of the article.

This article has been indexed from CySecurity News – Latest Information Security and Hacking Incidents

Read the original article: