Back to Developer Roadmap

Containment

src/data/roadmaps/devsecops/content/[email protected]

4.0832 B
Original Source

Containment

Containment in incident response refers to the actions taken to limit the scope and impact of a security incident. It involves isolating affected systems or networks to prevent the incident from spreading further, minimizing damage, and preserving evidence for investigation. This can include actions like disconnecting compromised machines from the network, shutting down vulnerable applications, or implementing temporary security controls.

Visit the following resources to learn more: