Incident response strategy and runbooks - AWS Best Practices for DDoS Resiliency

This whitepaper is for historical reference only. Some content might be outdated and some links might not be available.

Incident response strategy and runbooks

Developing a DDoS attack incident response strategy and building a security incident response process around it is crucial for all organizations. A recommended approach is to model your response playbook based on NIST's suggested steps such as gathering evidence, mitigating, recovering, and conducting post-incident analysis. For example, a response playbook for web application DoS or DDoS attacks is provided as an example. Additional resources are available in the AWS Security Incident Response Guide.