161PLN Base

Incident Response Planning

On this page

    Service Overview

    The DeepSeas Incident Response Planning Service ("IR Plan") includes i) a comprehensive review of the Customer's existing incident response roles, capabilities and procedures; and ii) the use of those findings to codify a more robust and resilient incident response plan on behalf of the Customer.

    Objectives

    The objective of this service is to produce a consolidating document to govern the Customer's incident response policies, procedures and personnel.

    Methodology

    The IR Plan methodology typically consists of the following: 

    • DEFINE - DeepSeas will codify the objectives of the incident response plan and the key stakeholders required for its development and execution.
    • DISCOVER - DeepSeas will review existing processes to support designing a customized incident response plan that meets Customer's security and strategic goals.
    • DEVELOP - Together with Customer, DeepSeas will write a document that, among other things, i) classifies threats based on severity and urgency; ii) outlines the step-by-step processes to be followed in the event of an incident; iii) names key roles and responsibilities; and iv) establishes clear escalation paths.
    • DEPLOY - Once finalized and mutually agreed to by Customer and DeepSeas, the incident response plan will be made available across the organization and incorporated into the standard operating procedures of the Customer's security team.

    Deliverables

    DeepSeas will deliver a tailored, detailed incident response plan document detailing the scope, procedures, roles & responsibilities, and strategies for the Customer to effectively detect, respond to, and recover from a cyber incident.

    Client Responsibilities

    The Client shall be responsible for the following items, in accordance with agreed-upon timelines established in the project plan: 

    • Scheduling and coordination of internal client resources for all project work.
    • Including the DeepSeas delivery team on scheduled invites leveraging the client’s video conferencing platform.
    • Assigning a resource to assist DeepSeas with content development; the assigned resource must have knowledge of client infrastructure and technical configuration, as well as existing incident response controls and capabilities.
    • Making available representatives and/or delegates.
    • Active participation by Customer representatives/delegates.