ABSTRACT

As stated in Chapter 1, many incident response plans fail to tackle the issue of employee malevolence and criminality; an alarmingly high percentage of banks and financial institutions, for example, do not have an incident response plan for internal fraud or computer misuse. Given the volume and value of daily transactions processed by the typical back office, this lack of preparation could arguably be construed as wilful negligence.