Are You Ready? How to Prepare for a Security Incident
When an incident occurs, the incident investigator will collect data from numerous sources within the organisation to determine whether or not there is a security incident. The investigator will request audit logs, transaction logs, intrusion logs, connection logs, system performance records and above all, User activity logs from firewalls, intrusion detection/prevention systems, routers, switches, servers, desktops, mainframes, business applications, databases, anti-virus, VPNs and any other system with a CPU.
Related Articles
- Global cloud spend to surpass $700B in 2025 as hybrid adoption spreads
- World Economic Forum asked 6 tech strategy leaders how they're promoting security and reliability.
- 10 reasons to choose Advantage PASS for deploying to Azure
- Top 9 Cloud Compliance Tools in 2025
- Microsoft Teams: Five Top Tips on Optimising Performance