home/glossary/Incident Handling

Incident Handling

nounid 2804·updated May 12, 2026
candidate

The mitigation of violations of security policies and recommended practices.

MWE

Classifications

Entity Type

Process0%rule-basedmulti_axis_classifier_low_confidence.v1

Sensitivity

80%llm-generatedllm:claude-haiku-4-5

Information Class

85%llm-generatedllm:claude-haiku-4-5

Variants

plural
Incident Handlings
possessive
Incident Handling's
pluralpossessive
Incident Handlings'

Framework definitions

SANS Glossary of Security Terms1 senseview framework →
§1
Incident Handling is an action plan for dealing with intrusions, cyber-theft, denial of service, fire, floods, and other security-related events. It is comprised of a six step process: Preparation, Identification, Containment, Eradication, Recovery, and Lessons Learned.
NISTIR 7298: Glossary of Key Information Security Terms, Revision 21 senseview framework →
§1
The mitigation of violations of security policies and recommended practices.
NIST SP 800-611 senseview framework →
§1
The mitigation of violations of security policies and recommended practices.

Outgoing relationships

No outgoing triples
This term is not the subject of any RDF-style relationship yet.

Incoming relationships

No incoming triples
No other term currently asserts a relationship to this one.