Bare Metal Cyber Presents: Framework

DE.AE-08 - Declaring Incidents Based on Criteria


Listen Later

DE.AE-08 involves declaring incidents when adverse events meet predefined criteria, such as severity or scope, ensuring a formal response is triggered. This process accounts for known false positives to avoid unnecessary escalation, applying criteria to event characteristics systematically. It marks the transition from detection to response.

This subcategory ensures consistency in incident identification, aligning declarations with risk management priorities and operational impact. It provides a clear threshold for action, enabling timely mitigation efforts. DE.AE-08 formalizes the shift to incident management with precision.

...more
View all episodesView all episodes
Download on the App Store

Bare Metal Cyber Presents: FrameworkBy Jason Edwards