著者
Motoyuki Ohmori Masayuki Higashino Toshiya Kawato
雑誌
研究報告インターネットと運用技術(IOT) (ISSN:21888787)
巻号頁・発行日
vol.2018-IOT-42, no.6, pp.1-5, 2018-06-21

In order to appropriately and quickly handle a security incident, ones may need Incident Tracking System (ITS) that records facts: what happens, when happens, who handles and how. It may be, however, difficult for a person in charge of incident handling to input all detailed information to ITS, and ITS should have minimal but enough information for further incident handling. In addition, a person in charge should be able to operate ITS intuitively since an incident does not happen so often. It is, however, unclear what information ITS should hold and how ITS navigates a person in charge to complete incident handling. This paper discusses these issues, and introduces our implementation and usage of ITS using Redmine within Computer Security Incident Response Team (CSIRT).