Improving incident response through collaboration: SIRTFI
This module is aimed at: Federations, Identity Providers, Service Providers, Standalone Authentication and Authorisation Infrastructures.
- Develop a basic understanding of the Sirtfi framework
- Understand what you need to do to support Sirtfi at your organisation
Although the increasing scale and degree of connection of Research and Education federations is extremely valuable for collaboration, it does expose an inviting new vector of attack for malicious actors. A single compromised account may provide an entry point to this global network of resources linking thousands of organisations. It is only a matter of time before large-scale, coordinated action from multiple federation participants is required to successfully respond to a federated incident.
The Sirtfi Framework identifies a set of baseline requirements for an organisation to be able to participate effectively in Security Incidents, by supporting the framework the community can raise the bar for Operational Security in Identity Federations. In order for this framework to work, federation participants must first adopt it.