Ability ID: A0128
Ability Description: Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies.
Work Roles with this Ability:
- Work Role ID: OV-MGT-001Work Roles: Information Systems Security ManagerWork Role Description: Responsible for the cybersecurity of a program, organization, system, or enclave.Category: Oversee and GovernSpecialty Area(s): Cybersecurity Management
- Work Role ID: PR-CDA-001Work Roles: Cyber Defense AnalystWork Role Description: Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threats.Category: Protect and DefendSpecialty Area(s): Cyber Defense Analysis
- Work Role ID: PR-CIR-001Work Roles: Cyber Defense Incident ResponderWork Role Description: Investigates, analyzes, and responds to cyber incidents within the network environment or enclave.Category: Protect and DefendSpecialty Area(s): Incident Response