Many organizations struggle with the effective performance of security incident response. It’s always been that way, but the nature of the challenge has changed in the past 30 years. Auditors, regulators and other stakeholders require a clear approach with regard to the management of security incidents. This presentation explores this evolution and its consequences.