It appears you don't have support to open PDFs in this web browser. To view this file, Open with your PDF reader
Abstract
Though Information Technology (IT) is ubiquitous in today’s business world, the security aspects of IT are still relatively new and unexplored topics for many companies. One of these security aspects however, Incident Response (IR), is quickly becoming understood as a business necessity, and no longer just a term isolated to the IT department. In some industries such as finance, health, or government contracting, a company-wide, enterprise-involved incident response strategy is mandatory for compliance, and continued operations in the competitive space. Even for companies not working in these industries, reporting data breaches in the United States is mandatory for 48 of 50 states, and in Washington D.C., Puerto Rico, U.S. Virgin Islands, and Guam (Davis Wright Tremaine LLP, 2019).
Using an immersion and crystallization process where IR plans, policies, and guidelines are assessed using thematic-analysis, this research intends to identify themes and common topics of a wide array of IR documentation. The documents were found in different industries, for-profit and not-for-profit organizations, and guidance that could be considered marketing or non-marketing efforts. This study reviewed 70 documents that were coded and analyzed. As a result, 7 themes emerged: communications plan, consequences of incident, goals of IR, IR operations, IR plan, IR policy, and IR team. The themes that emerged in the analysis were presented to assist organizations to create or update their IR programs.
You have requested "on-the-fly" machine translation of selected content from our databases. This functionality is provided solely for your convenience and is in no way intended to replace human translation. Show full disclaimer
Neither ProQuest nor its licensors make any representations or warranties with respect to the translations. The translations are automatically generated "AS IS" and "AS AVAILABLE" and are not retained in our systems. PROQUEST AND ITS LICENSORS SPECIFICALLY DISCLAIM ANY AND ALL EXPRESS OR IMPLIED WARRANTIES, INCLUDING WITHOUT LIMITATION, ANY WARRANTIES FOR AVAILABILITY, ACCURACY, TIMELINESS, COMPLETENESS, NON-INFRINGMENT, MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. Your use of the translations is subject to all use restrictions contained in your Electronic Products License Agreement and by using the translation functionality you agree to forgo any and all claims against ProQuest or its licensors for your use of the translation functionality and any output derived there from. Hide full disclaimer





