SOTER: a playbook for cybersecurity incident management

Onwubiko, Cyril and Ouazzane, Karim (2020) SOTER: a playbook for cybersecurity incident management. IEEE Transactions on Engineering Management. pp. 1-21. ISSN 1558-0040

Full text not available from this repository. (Request a copy)
Official URL:

Abstract / Description

SOTER,1 a cybersecurity incident management playbook, is developed to provide a comprehensive model to manage cybersecurity incidents, particularly for the cybersecurity operations center. The proposed playbook is adaptive, cross-sectorial, and process driven. Each key components of the incident management playbook are outlined and discussed. Furthermore, a lexicon based on equivalence mapping is developed and used to map existing cybersecurity incident vocabulary and taxonomy into a common and consistent lexicon to aid understanding among incident management stakeholder communities—national, government, and private sectors. A versatile workbook model has been explored, which proves to be adaptable to serve a wide range of cases for successfully managing government and private sector security operations center. Cybersecurity incident sharing partnership, formalism for metric and measurements of cybersecurity incident parameters, and cybersecurity incident classification and prioritization schemes are presented, and finally, cybersecurity incident “plays” and playbook templates are discussed.

Item Type: Article
Additional Information: ** From Crossref journal articles via Jisc Publications Router
Uncontrolled Keywords: cyber incident management playbook; cybersecurity incident response; cybersecurity operations center (CSOC); cybersecurity; incident response management; SOTER
Subjects: 000 Computer science, information & general works
Department: School of Computing and Digital Media
SWORD Depositor: Pub Router
Depositing User: Pub Router
Date Deposited: 27 Jun 2022 09:01
Last Modified: 27 Jun 2022 09:01

Actions (login required)

View Item View Item