The SOC team has verified a potential indicator of compromise on an endpoint. The team has narrowed the executable file type down to a new trojan family.
According to the NIST Computer Security Incident Handling Guide, what is the next step for handling this event?
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion