State of the Hack: The First 48 Hours


What to do when the clock starts ticking

Presented as a webinar on October 15, 2009.

The first 48 hours after a computer security breach occurs are critical for a victim organization. You need to determine how to address technical remediation issues, evaluate the need for outside counsel, assess what regulatory compliance requirements may apply and decide who needs to be involved within and outside your organization.

During this session, MANDIANT consultants shared the insights they have gained through working with commercial and government entities to manage these issues and achieve the best possible outcomes for their incidents.

In the webinar, we referred to several resources:

About the speakers

Steve Surdu is the Vice President of Professional Services at MANDIANT. As the leader of the Professional Services team, Steve’s primary responsibility is to direct the activities of the consulting and education teams, ensuring that MANDIANT provides unsurpassed service to its clients. Steve has over 25 years of experience in professional services, solutions delivery and business development. He has worked with clients in a number of industries including financial services, high technology, healthcare, manufacturing, state and federal government, retail and regulated industry.

Kris Harms is a Principal Consultant at MANDIANT and provides commercial organizations, attorneys and the U.S. Government with expertise in incident response, computer forensics, vulnerability assessment and security architecture design. He has recently been focused on solving high risk computer security incidents for Fortune 100 clients, financial institutions, and organizations affected by the Advanced Persistent Threat. A frequent industry speaker and instructor, Mr. Harms has appeared on the CBS News program 60 Minutes and PBS’s Wealth and Wisdom.