The new cyber gap is response latency
There is a point in many cybersecurity incidents when the technical side is already moving, but the organization around it is still figuring things out.
The alert has fired off, the communication channel has been established, people are joining from security, IT, operations, legal, perhaps communications, and yet the room is not quite ahead of the incident. It is still trying to decide what sort of problem it is looking at.
Which systems must be isolated first, which data matters enough to protect at all costs, which service has to keep breathing even if the rest of the network goes dark for a while, which vendor or dependency, sitting quietly in the background on an ordinary day, is about to become the turning point for the next six hours. In more organizations than many would care to admit, that knowledge is still too scattered, too informal, or too dependent on...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE