electricfork

Code of Conduct

Posted Nov 3, 11:29 AM by ben

A team must develop respect and confidence through how they communicate. Section 4.2.1 of theCSIRT handbook from CERT/CC and CMU SEI outlines one such approach. It’s nice but the gif they include in there is all but unreadable and I can’t find other sources. Focusing on these areas on a continual basis will assist in doing so during a stressful time (such as handling incidents). Below is what it says:


  1. Focus on the [teams] strengths
  2. Adapt to the audience
  3. Speak for yourself
  4. Do not speak for others
  5. Make complete statements
  6. Make concise statements
  7. Avoid the use of jargon
  8. Be sensitive and diplomatic
  9. Avoid arrogance
  10. Avoid being familiar
  11. State the facts
  12. Be truthful
  13. Retain control
  14. Avoid shock tactics
  15. Maintain confidences
  16. Make no promises
  17. Teach
  18. Stress the positive
  19. Apply quality control
  20. Use constructive criticism


// :: /

Comment

Commenting is closed for this article.

Creative Commons License
This work by http://electricfork.com is licensed under a Creative Commons Attribution-Noncommercial-Share Alike 3.0 United States License.

archive

about

charmsec

I lead an information security ops and response team. This site is a collection of interesting notes and brainstorms on the protecting from, detecting of, and responding to badness. You can read more about me or my site here.

You can subscribe to my blog via rss , or if you're looking for older items check out my archive of previous posts.

I organize a small infosec meetup in baltimore called charmsec. If you are looking for charmsec details you probably want to go here.

 

RSS

:: © 2002-2008