ý~ ½ g v 4 m x u * il = ) k / ) h ) # - öÓ · 1,67 1dwlrqdo ,qvwlwxwh ri 6wdqgdugv dqg...

50
. బ䚻ᮌ ᘯᚿ 䜲䞁䝔䝹 䝉䜻䝳䝸䝔䜱䠄䝬䜹䝣䜱䞊ᰴᘧ♫䠅 䝃䜲䝞䞊ᡓ␎ᐊ 䝅䝙䜰䞉䝉䜻䝳䝸䝔䜱䞉䜰䝗䝞䜲䝄䞊 CISSP ৽ಽऋ१ংش७य़গজॸऽऩऐोयऩऩःणभ৶ 1

Upload: others

Post on 16-Oct-2020

3 views

Category:

Documents


0 download

TRANSCRIPT

.

CISSP1

.

2

.

3

.

4

.

5

.

6

.

7

.

8

.

9

.

10

.

11

.

12

.

13

.

14

.

15

/Information Security Council

CEOCIO

CISO

Computer Emergency Response Team CERT CSIRT

Computer Security Incident Response Team CSIRT

/ Information TechnologyIT / Operation

Technology OT Security Operation Center SOC

ITOT

Competency Team

.

16

.

McAfee Confidential

17

.

18

.

http://www.intel.com/content/www/us/en/government/cybersecurity-framework-in-action-use-case-brief.html

.

20

.

21

.

22

.

23

.

24

.

25

.

26

.

27

.

28

••••

••

.

29

1

2

3

.

30

.

31

1

2

.

32

.

33

.

34

••

.

35

.

36

.

37

! ! ! !!!! !! ! !!

.

38

.

39

.

40

.

41

.

42

Threat Defense Lifecycle

.

43

.

44

P

D

C

A

P

D

D

C

P D

P D

P D

P D

A

A

.

45

.

46

IoC

Proxy

&

5 17

Host IPS

8 17

4254 2

241455

IPSProxy

SIEM

Time to Detect Time to Correct Time to Protect Time to Respond

.

47

IoC Time to Detect

Time to Protect

Time to Respond

IoC

Threat Intelligence Exchange

1 8

IoC SIEM

1 27

3 48

SIEMIPS

ePO

6 50

Time to Correct

.

48

24 74 16

IOC/210IOC/

619step

23step

••

••

.

49

.

50