Overview

The Incident Response team monitors events and alerts using detection tools and acts on any malicious activity. We respond to requests for help from units or community members dealing with suspicious communications or device activity. We proactively help secure the University environment by helping address vulnerable systems and providing incident response plan templates and tabletop exercises.

Staff using a computer

Services

Incident response services

Depending on the size of the cyber security incident, we can provide advice or full management of the incident from start to finish.

Forensic services

We provide computer forensics reviews or facilitate access to third-party services if incidents need a more detailed analysis of the changes made by malicious actors.

Incident response planning

We help to generate your individual unit incident response plans by providing example plans that can be personalized for your unit.

Tabletop exercises

Tabletop exercises help find the gaps in your incident response plans. We facilitate a small number of tabletop exercises each year and provide training and platforms to help you run exercises for your unit.

Identity Theft Protection

We provide self-serve or bespoke support to University members regarding incident response topics.

General inquires

Depending on the size of the cyber security incident, we can provide advice or full management of the incident from start to finish.

Contact

Monday to Friday from 9 a.m. to 5 p.m.
*Best effort for weekends, after-hours and holidays.

Incidents with significant data disclosure

Other information security incidents