Phishing Response Playbook

You got an alert from your manager that the CEO received a phishing mail. What are you going to do? Apply the following steps to this scenario. What are we doing here? Imitating a self-made playbook.

  • Define and understand objectives

  • Obtain relevant data

  • Inspect the data content

  • Perform normalization, if needed

  • Select an analysis method (kitchen sink, statistical analysis, etc.)

  • Perform the analysis

  • Evaluate the results

You got 30 minutes to write up a quick conclusion on how you are going to approach this, and this should include a flowchart.