Categorization of items that are applicable to multiple teams

To enable an intelligence package to be useful, at this point we need to ask ourselves:

  • What information is applicable to the teams?
    • Vulnerability management, security configuration management, and systems administration may need to know OS information and IP information
    • Network security and continuous security monitoring may need to know IP information and domain information
    • Threat intel management and malware analysis may need to know TTP information and hash information
  • Who are the key stakeholders that need to know this information?
  • How does it need to be delivered?
..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
3.133.121.160