scholarly journals Review of Human Decision-making during Computer Security Incident Analysis

2021 ◽  
Vol 2 (2) ◽  
pp. 1-47
Author(s):  
Jonathan M. Spring ◽  
Phyllis Illari

We review practical advice on decision-making during computer security incident response. Scope includes standards from the IETF, ISO, FIRST, and the US intelligence community. To focus on human decision-making, the scope is the evidence collection, analysis, and reporting phases of response, which includes human decision-making within and connecting these phases. The results indicate both strengths and gaps. A strength is available advice on how to accomplish many specific tasks. However, there is little guidance on how to prioritize tasks in limited time or how to interpret, generalize, and convincingly report results. Future work should focus on these gaps in explication and specification of decision-making during incident analysis.

2014 ◽  
Vol 12 (5) ◽  
pp. 61-67 ◽  
Author(s):  
Tiffani R. Chen ◽  
Daniel B. Shore ◽  
Stephen J. Zaccaro ◽  
Reeshad S. Dalal ◽  
Lois E. Tetrick ◽  
...  

2010 ◽  
Vol 37 (1) ◽  
pp. 852-870 ◽  
Author(s):  
Huy Kang Kim ◽  
Kwang Hyuk Im ◽  
Sang Chan Park

2015 ◽  
pp. 56.1-56.39
Author(s):  
Michael Miora ◽  
M. E. Kabay ◽  
Bernie Cowens

2004 ◽  
Vol 2004 (11) ◽  
pp. 5-7 ◽  
Author(s):  
John M. Salomon ◽  
Patrik Elsa

1998 ◽  
Author(s):  
Moira West-Brown ◽  
Don Stikvoort ◽  
Klaus-Peter Kossakowski

2014 ◽  
Vol 12 (5) ◽  
pp. 16-26 ◽  
Author(s):  
Robin Ruefle ◽  
Audrey Dorofee ◽  
David Mundie ◽  
Allen D. Householder ◽  
Michael Murray ◽  
...  

Sign in / Sign up

Export Citation Format

Share Document