Planning and executing an IoT incident response

IoT incident response and management can be broken into four phases:

  • Planning
  • Detection and analysis
  • Containment, eradication, and recovery
  • Post-incident activity

The following figure provides a view into the processes and how they relate to each other:

Planning and executing an IoT incident response

Any organization should have, at a minimum, these processes well documented and tailored for its unique system(s), technologies, and deployment approaches.

Incident response planning

Planning (sometimes called incident response preparation) is composed of those activities that are, figuratively speaking, designed to keep you from behaving like a deer in headlights ...

Get Practical Internet of Things Security now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.