Glossary

Phase 1: Detection (0-15 minutes)

Security monitoring tool generates alert - On-call security analyst validates the alert (true positive vs. false positive) - If true positive: declare incident, assign severity level

Learn More

Related Terms