With the current increase in security breaches affecting both the civilian and federal IT infrastructure, it is clear that there are no real IT solutions that can totally protect or provide a 100% defense against threats.

  • Based on this assumption, what must organizations do concerning the scope and charter of incident management?
  • What should be the responsibilities for the security manager?
  • What must be the real incident management objectives, metrics, and indicators for ensuring the proper security response enforcement and threat containment in the face of growing vulnerabilities?

