1 00:00:07,150 --> 00:00:09,000 - [Instructor] Organizations need to have 2 00:00:09,000 --> 00:00:11,520 capabilities to define, build, 3 00:00:11,520 --> 00:00:14,670 orchestrate, manage, and monitor 4 00:00:14,670 --> 00:00:18,670 the different operational processes and workflows. 5 00:00:18,670 --> 00:00:22,640 And this is actually achieved by implementing runbooks 6 00:00:22,640 --> 00:00:26,720 and Runbooks Automation, otherwise known as RBA. 7 00:00:26,720 --> 00:00:31,630 Now, a runbook is a collection of procedures and operations 8 00:00:31,630 --> 00:00:35,250 performed by system administrators, security professionals, 9 00:00:35,250 --> 00:00:37,420 or network operators. 10 00:00:37,420 --> 00:00:40,940 There are different runbooks metrics that can help you 11 00:00:40,940 --> 00:00:44,222 and your organization, to actually be successful. 12 00:00:44,222 --> 00:00:48,890 Things like meantime to repair, or MTTR, 13 00:00:48,890 --> 00:00:53,890 so, how long it's actually taking you to react, 14 00:00:53,960 --> 00:00:58,260 and not only react, but of course mitigate and remediate 15 00:00:58,260 --> 00:01:00,260 a security attack. 16 00:01:00,260 --> 00:01:03,880 Also, you can measure meantime between failures, right? 17 00:01:03,880 --> 00:01:05,170 You can measure things like 18 00:01:05,170 --> 00:01:07,080 meantime to discover a security incident, 19 00:01:07,080 --> 00:01:10,480 how long, actually, does it take you to just discover 20 00:01:10,480 --> 00:01:13,710 that there's a security incident within the organization, 21 00:01:13,710 --> 00:01:14,960 meantime to actually contain 22 00:01:14,960 --> 00:01:16,220 or mitigate the security incident, 23 00:01:16,220 --> 00:01:19,380 as we've actually mentioned before, and automating 24 00:01:19,380 --> 00:01:23,810 the provisioning of IT resources as well. 25 00:01:23,810 --> 00:01:27,680 Now, there are many, different, commercial and open-source, 26 00:01:27,680 --> 00:01:30,590 Runbook Automation solutions in the industry. 27 00:01:30,590 --> 00:01:34,290 An example of a popular, open-source, RBA solution 28 00:01:34,290 --> 00:01:36,470 is Rundeck, and I'm actually showing 29 00:01:36,470 --> 00:01:38,440 the link here is rundeck.org. 30 00:01:38,440 --> 00:01:41,520 You can actually get more information and download 31 00:01:41,520 --> 00:01:45,580 that open-source solution software. 32 00:01:45,580 --> 00:01:47,670 Now, Rundeck can be integrated 33 00:01:47,670 --> 00:01:49,870 with configuration management platform 34 00:01:49,870 --> 00:01:53,980 such as Chef, Puppet and also Ansible. 35 00:01:53,980 --> 00:01:56,030 Now, a commercial RBA 36 00:01:56,030 --> 00:01:59,330 is the Cisco Workload Automation, or CWA, 37 00:01:59,330 --> 00:02:02,700 which can manage different businesses' processes across 38 00:02:02,700 --> 00:02:06,500 a comprehensive set of applications and systems. 39 00:02:06,500 --> 00:02:09,750 You can obtain more information about Cisco CWA 40 00:02:09,750 --> 00:02:11,713 at the link that I'm showing here.