Advertisement
opexxx

SOC_Metrics.txt

May 10th, 2021
147
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.81 KB | None | 0 0
  1. Recommended Fields for Metric Collection
  2. DateTime Occurred
  3. DateTime Detected
  4. DateTime Contained
  5. DateTime Expelled
  6. DateTime Owner Notified
  7. DateTime Escalated
  8. Recommended Mitigation
  9. Severity
  10. Source Use Case
  11. Source Signature
  12. Origination
  13. MITRE ATT&CK Technique
  14. Recommended Metrics
  15. Average Cost Per Incident
  16. Average Time to Detect
  17. Average Time to Escalate
  18. Average Time to Contain
  19. Average Time to Expel
  20. Average Time to Notify
  21. Incidents Opened in a given time frame
  22. Incidents Closed in a given time frame
  23. Count of Incidents per Recommended Mitigation
  24. Count of Incidents per Severity
  25. Count of Incidents per Severity Not Reviewed Within Required Time
  26. Count of Incidents per Alert/Rule/Signature
  27. Count of Incidents per Use Case
  28. Count of False Positive Incidents Per Use Case
  29. Count of Incidents per Attack Technique
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement