https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2023 MSP 501 Application
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2023 Call for Speakers
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2023 MSP 501 Application
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2023 Call for Speakers
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Cloud


Shutterstock

Cybersecurity

Security Roundup: Incident Response Plans, Data Breach Costs, Kudelski, Asigra

  • Written by Edward Gately
  • May 25, 2018
Incident response plans are designed to test a company's ability to respond to a security incident.
Channel Partners' Edward Gately

Edward Gately

With constant data breaches and cybercriminals upping their games, it’s now more important than ever for organizations to have an effective incident-response (IR) plan in place.

This topic was covered during a breakout session at this week’s OpenText Enfuse 2018 conference. D. Kall Loper, director at Protiviti, a consulting firm in technology, business process, analytics, risk, compliance, transactions and internal audit, lead the session.

IR plans are designed to test a company’s ability to respond to a security incident with the goal of handling the situation so that it limits the damage to the business while reducing recovery time and costs.

“Incident-response plans should facilitate the process, not hinder it and not be a source of blame later,” Loper said.

Protiviti's D. Kall Loper

Protiviti’s D. Kall Loper

One of the big problems with many IR plans is they don’t reflect what they’re actually doing in a response, he said. Many just say, ‘When this happens, you must do this,’ he said. Also, an overly prescriptive plan is a “recipe for disaster,” he said.

It’s important to assemble the best people and to have clearly defined roles for everyone.

“Authority is big,” Loper said. “IR is the glue that binds together roles of individuals. Bring your competent people together. If you have incompetent people, you’re going to have to move them out of the way, which takes time.”

The key characteristics of a good IR plan are: brief, clear, resilient and living, he said. For example, you want “clear and brief instructions for what people should do,” he said.

“Everybody right now wants a plan that can be done and then, ‘We don’t have to think about it anymore,” Loper said. “This one requires some buy-in and requires that people understand it, at least enough to work it, and that’s easy. So that’s part of the brief — we want to make it as easy as possible on the people, because if you make it hard, they won’t do it.”

Tabletop exercises, workshops and other activities can be more effective than “going home and doing the reading,” he said.

Resiliency can mean making sure the right people are in place in the core team and can fulfill all roles necessary during a response, Loper said.

“A living document allows your plan to adapt to organizational and practice change with minimal document change,” he said. “The brief features make it much less onerous to make those changes. If easier, there’s a better chance of it getting updated. And if someone leaves, someone can step in and read the checklist.”

So how can this benefit MSSPs?

“This gives them a better handle into the company if they can understand a plan like this,” Loper said. “Or even if the company’s coordinator just tells them, ‘Hey, we’ve got this checklist, we want to know what you do, we want to know what you need from us, here [are] our expectations … MSSPs have been dying to get that from their clients for years.”

Lessons learned from prior incidents provide an opportunity to revise and update the plan, he said.

“There are a lot of successful plans out there, but if you don’t like what your plan is, consider some of these options,” Loper said. “You don’t need to use this team structure if you have one that works. This is an effective IR plan and these are the components of it.”

Data Breach Costs Mounting

A new survey by Kaspersky Lab shows the average cost of a data breach globally is on the rise, with breaches now reaching an average of $1.23 million for enterprises, up 24 percent from $992,000 last year, and $120,000 on average for SMBs, up 36 percent, from $88,000.

The annual survey included more than 6,600 respondents from 29 countries. In North America, the average cost for an enterprise has reached …

  • Page 1
  • Page 2
  • Page 3
Tags: Agents Analytics Backup & Disaster Recovery Cloud New Products & Services Security

Most Recent


  • Cybersecurity partnership
    ConnectWise Partners with CISA JCDC for Enhanced MSP Cybersecurity
    ConnectWise is already applying its learnings from the early stages of the collaboration.
  • Security Operations Center
    ServiceNow Looks Beyond IT Service Management with Now Platform Utah Release
    Now Platform Utah moves beyond ITMS with workforce optimization and process automation.
  • Security Merger
    Cisco Increasing Cloud Security via Lightspin Technologies Acquisition
    Cisco is reportedly shelling out $200 million to $250 million for the company.
  • Microsoft's Nicole Herskowitz
    ‘The Next Normal is Here’: Microsoft, Cisco, RingCentral Make the Case for Generative AI in Collaboration
    “Every decade or so a new technology emerges that is truly disruptive,” said RingCentral's president and COO.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • College classroom
    Community College Ransomware Attack Wreaks Havoc
  • Virtual Desktop
    6 Enhancements to Microsoft’s WVD, Plus a New Name: Azure Virtual Desktop
  • Cloud computing concept
    Cloud Computing Adoption Isn’t Slowing — Need to Convince Clients?
  • Welcome Mat
    Ex-Telarus Exec Scott Forbush Leaves Upstack for PPT Solutions After 5 Months

Upcoming Events

View all

Channel Partners Conference & Expo

May 1, 2023 - May 4, 2023

Channel Partners Europe

June 13, 2023 - June 14, 2023

Channel Futures Leadership Summit

October 30, 2023 - November 2, 2023

Galleries

View all

Amplify 2023: HP Tackling Tough Market with ‘Realistic Optimism’

March 29, 2023

Meet Channel Futures’ 2023 Channel Influencers, EMEA

March 29, 2023

ServiceNow Looks Beyond IT Service Management with Now Platform Utah Release

March 29, 2023

Industry Perspectives

View all

Why You Should Include Audiovisual Solutions in Your UC Services

March 28, 2023

Selling Your MSP: Strategic vs. Financial Buyers

March 22, 2023

10 Strategic Smart Enterprise Drivers for 2023

March 16, 2023

Webinars

View all

Give Customers the Power: How MSPs Can Leverage Cloud Choice

April 4, 2023

DE&I Dialogue: How the Right DE&I Initiatives Can Propel Your Business

April 5, 2023

Meet the 2023 Channel Futures Channel Influencers

April 13, 2023

White Papers

View all

6 UCaaS Reseller Challenges and How Real World Businesses Solved Them

February 1, 2023

Frost Radar: North American UCaaS Market, 2022

February 1, 2023

The Complete Guide to White-Label UCaaS for Reseller Success

February 1, 2023

Channel Futures TV

View all

Kaseya, Post-Acquisition, Expanding ‘Well-Regarded’ Datto Partner Program

Aryaka ‘Driving Value to the Channel Community’ with Throttle

March 24, 2023

Coffee with Craig and James Episode 121: Hewlett Packard Enterprise

March 23, 2023

Real-Life M&A: Advice for a Successful Channel Deal

March 13, 2023

Twitter

ChannelFutures

.@Cisco is acquiring @LightspinTech to beef up #cloudsecurity dlvr.it/SlhYYk https://t.co/59LXG92Csl

March 29, 2023
ChannelFutures

.@BridgePointeTec and @Onesourcecom offered some interesting insights into the M&A process. dlvr.it/SlhXzy https://t.co/N11TGjaJwt

March 29, 2023
ChannelFutures

.@ConnectWise partners with @CISAgov JCDC for better security for #MSPs. dlvr.it/SlhVNQ https://t.co/9rqHvhT9Dj

March 29, 2023
ChannelFutures

.@HP CEO @EnriqueJLores reveals plan to tackle tough market conditions; “It’s important not to lose perspective”… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

.@ServiceNow expands further beyond #ITSM with #NowPlatformUtah release. dlvr.it/SlhDq5 https://t.co/JscqV7cmUm

March 29, 2023
ChannelFutures

#CPExpo preview: @KaseyaCorp offering plenty of enablement services to partners. dlvr.it/Slh99x https://t.co/35cFctNynW

March 29, 2023
ChannelFutures

In the changing world of networking and telecommunications services, Channel Futures is recognizing these 20 leader… twitter.com/i/web/status/1…

March 29, 2023
ChannelFutures

Ever think about what you know now that you wish you’d known earlier? Here’s what women in the communications and I… twitter.com/i/web/status/1…

March 29, 2023

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2023 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X