Which element is MOST important when developing an information security incident response plan?
-
A
Listing all known threat actors by name
-
B
Defining roles, responsibilities, and escalation procedures
-
C
Documenting the technical architecture of the SIEM
-
D
Specifying the brand of forensic tools to be used