# Delivery को SOC और SIRT से जोड़ें

Taiga Learning · Worksheet अभ्यास पत्र
https://taiga.training/hi/lessons/security-operations/

काल्पनिक या स्वीकृत जानकारी इस्तेमाल करें। इस worksheet में secrets न डालें।

## सीखने के उद्देश्य
- SOC monitoring और SIRT incident coordination का अंतर समझें।
- Security incident का उपयोगी handoff तैयार करें।
- Containment, recovery और सुधार के engineering काम को जोड़ें।

## अभ्यास
इस पाठ के काल्पनिक token incident का उपयोग करें। Facts, uncertainties, प्रभावित identities, सुरक्षित रखे प्रमाण, containment विकल्प और निर्णयकर्ताओं वाला handoff लिखें। Token की value शामिल न करें।

## आपका उत्तर
- परिदृश्य और दायरा:
- धारणाएँ और खुले सवाल:
- प्रस्तावित उत्तर या निर्णय, कारणों सहित:

## अपना उत्तर सत्यापित करें
| दावा या मानदंड | प्रमाण या test | परिणाम या कमी | जिम्मेदार व्यक्ति |
| --- | --- | --- | --- |
| | | | |
| | | | |
| | | | |

## अगली कार्रवाई
- कार्रवाई, जिम्मेदार व्यक्ति और तारीख:
- आप इस उत्तर की समीक्षा कब करेंगे?

## याद रखने वाला सिद्धांत
Security response को तय अधिकार, प्रमाण और handoffs चाहिए। Development platform संगठन के SOC या incident response team की जगह नहीं लेता।

## स्रोत
- [NIST: Incident Response Recommendations, SP 800-61 Rev. 3](https://csrc.nist.gov/pubs/sp/800/61/r3/final)
- [FIRST: CSIRT Services Framework](https://www.first.org/standards/frameworks/csirts/csirt_services_framework_v2.1)
- [Taiga: Shared responsibility](https://tai.ga/en/trust/shared-responsibility/)
- [Taiga docs: Audit log](https://docs.tai.ga/administration/audit-log/)

यह worksheet सीखने में मदद करती है। इसे पूरा करने से अपने-आप production में बदलाव की अनुमति नहीं मिलती।
