NIST SP 800-84: Guide to Test, Training, and Exercise Programs for IT Plans and Capabilities
3.6 3.6.3 csc19 Incident Response
https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-84.pdf
This NIST Special Publication helps organizations in designing, developing, conducting, and evaluating test, training, and exercise events.
NIST SP 800-86: Guide to Integrating Forensic Techniques into Incident Response
3.6 3.6.1 3.6.2 csc19 Incident Response
https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-86.pdf
This guide from NIST discusses how important forensics can be for an organization during a cyber incident.
https://www.youtube.com/watch?v=Fo33lEWkqO4&list=PLstjectj9BFgWGjHn4y2oygN34oFpSPjR&index=56
In this video, Mike dives into CMMC 2.0 Control IR.L2-3.6.1. This control is all about being prepared, having a written and practiced plan in place so that your entire team knows exactly what to do when an attack happens.
https://www.youtube.com/watch?v=IFMXy3sUb4A
This YouTube video covers key components of an effective incident response plan.
YouTube – CMMC 2.0 Control IR.L2-3.6.3 – Test the organizational incident response capability
3.6 3.6.1 csc19 Incident Response
https://www.youtube.com/watch?v=WAGoUgimqvU
In this video, Mike breaks down CMMC 2.0 Control IR.L2-3.6.3. Hot on the heels of the requirement to have an incident response plan or similar instrument that defines how information security incidents will be handled and responded to is this control which mandates that you actually test it!