Nowadays, there has been a striking increase in electronic communication between people and this increased communication between people and machines is affecting every industry. Information systems are very critical assets in any organization and vulnerabilities in those systems can be exploited by attackers or malicious users to cause an incident threatening the security. In this scenario, there has been an increase in computer security incidents threatening confidentiality, availability, and integrity of information. Such incidents can be made to occur deliberately with malicious intent or can be caused unintentionally.
An incident can be defined as any unexpected action, event or an occurrence that has an immediate or potential effect. A security incident hampers the security and stability of information systems. There are several definitions of security incidents.