The process of rapidly assessing and prioritizing security alerts and incidents based on severity, scope, and potential impact. Effective triage prevents alert fatigue and ensures critical incidents receive immediate attention.
Related Terms
Mean Time to Respond (MTTR)
incident-responseA metric measuring the average time from detecting a security incident to fully containing and remediating it. MTTR is a...
Security Information and Event Management (SIEM)
incident-responseA solution that aggregates and analyzes security log data from across an organization's IT infrastructure to detect thre...
Security Operations Center (SOC)
incident-responseA centralized unit that monitors, detects, investigates, and responds to cybersecurity incidents around the clock. SOC t...