Gateway to Think Tanks
来源类型 | Report |
规范类型 | 报告 |
DOI | https://doi.org/10.7249/RRA1265-4 |
来源ID | RR-A1265-4 |
Managing Response to Significant Cyber Incidents: Comparing Event Life Cycles and Incident Response Across Cyber and Non-Cyber Events | |
Quentin E. Hodgson; Aaron Clark-Ginsberg; Zachary Haldeman; Andrew Lauland; Ian Mitch | |
发表日期 | 2022-05-12 |
出版年 | 2022 |
语种 | 英语 |
结论 | Various factors may make responding to a significant cyber incident more challenging
The disparities in response capabilities among entities — both public and private — are also a consideration for cyber incidents
|
摘要 | Cyber incident response has evolved based on systems and processes developed for other types of incident response, such as response to natural hazards. Large-scale cyber incidents that would have an impact on the United States' national and homeland security, economic security, and public safety and welfare to date are rare. However, they may have additional complications that make them more complex to plan for, including challenges in distinguishing the early stages of a significant cyber incident from a more quotidian incident, and the diversity of stakeholders involved. In this report, RAND researchers compare and contrast incident response for cyber and other types of hazards, both human-caused and natural, to derive initial insights into their similarities and distinctions. The report suggests some ways to improve preparedness for cyber incident response and propose additional areas requiring further research. Recommendations include developing more rigorous and dynamic joint public-private exercises, conducting further analysis to identify how systems could fail through a cyber attack to inform early warning efforts, and developing decision mechanisms and shared understandings that will facilitate coordinated activation and execution of incident response plans. |
目录 |
|
主题 | Cyber Warfare ; Cybercrime ; Emergency Preparedness ; Natural Hazards ; United States |
URL | https://www.rand.org/pubs/research_reports/RRA1265-4.html |
来源智库 | RAND Corporation (United States) |
引用统计 | |
资源类型 | 智库出版物 |
条目标识符 | http://119.78.100.153/handle/2XGU8XDN/524795 |
推荐引用方式 GB/T 7714 | Quentin E. Hodgson,Aaron Clark-Ginsberg,Zachary Haldeman,et al. Managing Response to Significant Cyber Incidents: Comparing Event Life Cycles and Incident Response Across Cyber and Non-Cyber Events. 2022. |
条目包含的文件 | ||||||
文件名称/大小 | 资源类型 | 版本类型 | 开放类型 | 使用许可 | ||
RAND_RRA1265-4.pdf(966KB) | 智库出版物 | 限制开放 | CC BY-NC-SA | 浏览 | ||
x1651518150068.jpg.p(4KB) | 智库出版物 | 限制开放 | CC BY-NC-SA | 浏览 |
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。