Establishment of a Center of Computer Security Incident Response Team in an IFES
Information security. CSIRT. Computer Security Incident Response Team. Federal Institution of Higher Education.
Information security nowadays is becoming increasingly important. In particular, public institutions, driven by the needs to achieve efficiency in their processes, have given greater attention to this branch of computer science studies. Within this context, CSIRTs (Computer Security Incident Response Teams), have become commonplace in many organizations around the world. This work is a qualitative research associated with an intervention project applied to the Federal University of Rio Grande do Norte, which aims at the formal institution of a CSIRT. As a methodological strategy to achieve its objectives, the LCC (Life Cycle Canvas) visual approach and the Scrum agile framework were adopted to plan the project and coordinate the deliveries of its products. As a result, CeTRIS (Center for the Treatment and Response to Security Incidents) was created, a CSIRT that works with its own team of technicians and acts preventively and reactively seeking to promote in the institution the improvement of security in its computational environment. In addition, documents were produced with guidelines for its operation and indicators to measure its efficiency and performance. A website was also created to present the group to the university community and disseminate alerts and news. The group was created and started its activities with positive effects for information security at UFRN.