Understanding Collaborative Challenges in IT Security Preparedness Exercises
نویسندگان
چکیده
IT security preparedness exercises allow for practical collaborative training, which in turn leads to improved response capabilities to information security incidents for an organization. However, such exercises are not commonly performed in the electric power industry. We have observed a tabletop exercise as performed by three organizations with the aim of understanding challenges of performing such exercises. We argue that challenges met during exercises could affect the response process during a real incident as well, and by improving the exercises the response capabilities would be strengthened accordingly. We found that the response team must be carefully selected to include the right competences and all parties that would be involved in a real incident response process, such as technical, managerial, and business responsible. Further, the main goal of the exercise needs to be well understood among the whole team and the facilitator needs to ensure a certain time pressure to increase the value of the exercise, and both the exercise and existing procedures need to be reviewed. Finally, there are many ways to conduct preparedness exercises. Therefore, organizations need to both optimize current exercise practices and experiment with new ones.
منابع مشابه
Designing and conducting tabletop exercises to assess public health preparedness for manmade and naturally occurring biological threats
BACKGROUND Since 2001, state and local health departments in the United States (US) have accelerated efforts to prepare for high-impact public health emergencies. One component of these activities has been the development and conduct of exercise programs to assess capabilities, train staff and build relationships. This paper summarizes lessons learned from tabletop exercises about public health...
متن کاملUse of After Action Reports (AARs) to Promote Organizational and Systems Learning in Emergency Preparedness
Many public health and healthcare organizations use formal knowledge management practices to identify and disseminate the experiences gained over time. The "lessons-learned" approach is one such example of knowledge management practice applied to the wider concept of organizational learning. In the field of emergency preparedness, the lessons-learned approach stands on the assumption that learn...
متن کاملPromoting community preparedness: lessons learned from the implementation of a chemical disaster tabletop exercise.
Health educators are frequently called on to facilitate community preparedness planning. One planning tool is community-wide tabletop exercises. Tabletop exercises can improve the preparedness of public health system agencies to address disaster by bringing together individuals representing organizations with different roles and perspectives in specific disasters. Thus, they have the opportunit...
متن کاملState of Virtual Reality Based Disaster Preparedness and Response Training
The advent of technologically-based approaches to disaster response training through Virtual Reality (VR) environments appears promising in its ability to bridge the gaps of other commonly established training formats. Specifically, the immersive and participatory nature of VR training offers a unique realistic quality that is not generally present in classroom-based or web-based training, yet ...
متن کاملPreparedness for emergency response: guidelines for the emergency planning process.
Especially since the terrorist attacks of 11 September 2001, governments worldwide have invested considerable resources in the writing of terrorism emergency response plans. Particularly in the United States, the federal government has created new homeland security organisations and urged state and local governments to draw up plans. This emphasis on the written plan tends to draw attention awa...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2015