Rating
Average: 5 (4 votes)
Keywords
  • Campus area network
  • Security incident
Problem

Selection of the appropriate response to identification of a compromised/infected device in a Campus Area Network

Goal
  • To provide secure IT environment
  • To minimize warnings by CERT
  • To prevent security incidents
  • To provide high connectivity

 

Key Performance Indicators (KPI)
  • Number of incidents per time unit
  • Incident resolution time
Context
  • Urgency level - the urgency level determined by potential adverse impact of the security incident. It has value in range (Low, Medium, High)
Solution
  • Notify user if Urgency is Low or Medium and User can be identified
  • Disconnect the Device if Urgency is Medium  and User cannot be identified
  • Disconnect the Device if Urgency is High
  • Ignore otherwise
Solution element

-

Parameters

-

Parameter values

-

Guidelines

-