Rethinking Security Incident Response: The Integration of Agile Principles

Grispos, G., Glisson, W. B. and Storer, T. (2014) Rethinking Security Incident Response: The Integration of Agile Principles. 20th Americas Conference on Information Systems (AMCIS 2014), Savannah, GA, USA, 07-09 Sep 2014. ISBN 9780692253205

[img]
Preview
Text
114468.pdf - Accepted Version

216kB

Abstract

In today‟s globally networked environment, information security incidents can inflict staggering financial losses on organizations. Industry reports indicate that fundamental problems exist with the application of current linear plan-driven security incident response approaches being applied in many organizations. Researchers argue that traditional approaches value containment and eradication over incident learning. While previous security incident response research focused on best practice development, linear plandriven approaches and the technical aspects of security incident response, very little research investigates the integration of agile principles and practices into the security incident response process. This paper proposes that the integration of disciplined agile principles and practices into the security incident response process is a practical solution to strengthening an organization‟s security incident response posture.

Item Type:Conference or Workshop Item
Status:Published
Refereed:Yes
Glasgow Author(s) Enlighten ID:Glisson, Dr William and Storer, Dr Tim
Authors: Grispos, G., Glisson, W. B., and Storer, T.
College/School:College of Arts & Humanities > School of Humanities > Information Studies
College of Science and Engineering > School of Computing Science
ISBN:9780692253205
Copyright Holders:Copyright © 2014 The Authors
Related URLs:

University Staff: Request a correction | Enlighten Editors: Update this record