Editor’s Note: GAO report GAO-14-354, “Information Security: Agencies Need to Improve Cyber Incident Response Practices” is available here. Below are GAO’s Recommendations.
From: GAO
To improve the effectiveness of governmentwide cyber incident response activities, we recommend that the Director of OMB and Secretary of Homeland Security address agency incident response practices governmentwide, in particular through CyberStat meetings, such as emphasizing the recording of key steps in responding to an incident. To improve the effectiveness of cyber incident response activities, we are making 25 recommendations to six selected agencies to improve their cyber incident response programs.