ABSTRACT

Man-aging a security breach life cycle encompasses many managerial, technical, communication, and legal disciplines. To survive an event you need to completely understand the event and the impacts of properly measuring and investigating. When reporting an incident, the information provided will be scrutinized as it rolls up the ranks of the organization. Every discussion on security has a section on security policies and their importance. Security policies define the desired security posture through communicating what is expected of employees and systems as well as the processes used to maintain those systems. Security policies are inarguably the core point of any successful security program within an organization. Reporting incidents is not something that many organizations wish to perform outside the company, but this information is critical to the advancement and awareness of the security industry as a whole. Incident reporting is a small but critical part of a much more comprehensive incident management program.