<?xml version="1.0" encoding="UTF-8"?>
<record
    xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
    xsi:schemaLocation="http://www.loc.gov/MARC21/slim http://www.loc.gov/standards/marcxml/schema/MARC21slim.xsd"
    xmlns="http://www.loc.gov/MARC21/slim">

  <leader>01731cam a22001575i 4500</leader>
  <datafield tag="999" ind1=" " ind2=" ">
    <subfield code="c">37852</subfield>
    <subfield code="d">37852</subfield>
  </datafield>
  <controlfield tag="008">180920s2018    xxu|||| o    |||| 0|eng  </controlfield>
  <datafield tag="020" ind1=" " ind2=" ">
    <subfield code="a">9781484238707</subfield>
  </datafield>
  <datafield tag="100" ind1="1" ind2=" ">
    <subfield code="a">Thompson, Eric C.</subfield>
  </datafield>
  <datafield tag="245" ind1="1" ind2="0">
    <subfield code="a">Cybersecurity Incident Response :</subfield>
    <subfield code="b">How to Contain, Eradicate, and Recover from Incidents /</subfield>
    <subfield code="c">by Eric C. Thompson.</subfield>
  </datafield>
  <datafield tag="260" ind1=" " ind2=" ">
    <subfield code="a">(New York) :</subfield>
    <subfield code="b">Apress,</subfield>
    <subfield code="c">c2020.</subfield>
  </datafield>
  <datafield tag="300" ind1=" " ind2=" ">
    <subfield code="a">xiii, 176 p. :</subfield>
  </datafield>
  <datafield tag="520" ind1=" " ind2=" ">
    <subfield code="a">Create, maintain, and manage a continual cybersecurity incident response program using the practical steps presented in this book. Don't allow your cybersecurity incident responses (IR) to fall short of the mark due to lack of planning, preparation, leadership, and management support. Surviving an incident, or a breach, requires the best response possible. This book provides practical guidance for the containment, eradication, and recovery from cybersecurity events and incidents. The book takes the approach that incident response should be a continual program. Leaders must understand the organizational environment, the strengths and weaknesses of the program and team, and how to strategically respond. Successful behaviors and actions required for each phase of incident response are explored in the book. Straight from NIST 800-61, these actions include: Planning and practicing Detection Containment Eradication Post-incident actions What You'll Learn: Know the sub-categories of the NIST Cybersecurity Framework Understand the components of incident response Go beyond the incident response plan Turn the plan into a program that needs vision, leadership, and culture to make it successful Be effective in your role on the incident response team.</subfield>
  </datafield>
  <datafield tag="650" ind1=" " ind2="0">
    <subfield code="a">Data protection.</subfield>
  </datafield>
  <datafield tag="650" ind1="1" ind2="4">
    <subfield code="a">Security.</subfield>
  </datafield>
  <datafield tag="942" ind1=" " ind2=" ">
    <subfield code="c">BK</subfield>
  </datafield>
  <datafield tag="952" ind1=" " ind2=" ">
    <subfield code="0">0</subfield>
    <subfield code="1">0</subfield>
    <subfield code="2">lcc</subfield>
    <subfield code="4">0</subfield>
    <subfield code="7">0</subfield>
    <subfield code="8">NFIC</subfield>
    <subfield code="a">MAIN</subfield>
    <subfield code="b">MAIN</subfield>
    <subfield code="c">OOWR</subfield>
    <subfield code="d">2024-03-08</subfield>
    <subfield code="e">GFT</subfield>
    <subfield code="l">0</subfield>
    <subfield code="o">QA 76.9 .T46 2020</subfield>
    <subfield code="p">00048610</subfield>
    <subfield code="r">2024-03-08 00:00:00</subfield>
    <subfield code="t">1</subfield>
    <subfield code="w">2024-03-08</subfield>
    <subfield code="y">BK</subfield>
  </datafield>
</record>
