X hits on this document

138 views

0 shares

0 downloads

0 comments

39 / 47

Orion Incident Response Live CD

3

It’s important to note that the owners of these sites often discourage automated submissions since these tools are often also used by attackers. For this reason, the analyst cannot rely on these automated tools alone.

11.

Report Creation

Incident response and analysis work are not truly done until a report has been written. Orion provides report templates and a workflow to guide the responder to create the reports at the proper times. Here is a list of the various templates included currently in Orion:

  • Incident Analysis Report

  • Incident Activity Log

  • Incident Responder Task List

Figure 26: Analysis Report template

John Jarocki, john.jarocki@gmail.com

Document info
Document views138
Page views139
Page last viewedWed Dec 07 12:57:24 UTC 2016
Pages47
Paragraphs864
Words8806

Comments