Virtus Group logo

Runbook - Network Security Management

Runbook stub • Effective 26 Sep 2025 • Version v1.0

Scope

Operate network security policies: firewall rules, segmentation/Zero Trust, SWG/SASE policy upkeep, and change governance.

In scope Operations, monitoring, reporting to SLAs/SLOs, continuous improvement (SIP).
Out of scope One-off projects/uplifts (CPS), custom application development, non-standard integrations unless agreed.

Dependencies

Standard Operating Procedures (SOPs)

Daily

Weekly

Monthly

Quarterly

SLAs and SLOs

MeasureTarget
Incident response (business hours)Ack within 30 minutes; priority-based resolution targets
Change records100 percent with rehearsal and rollback for high-risk changes
ReportingMonthly service review delivered within 5 business days of month end
Change windowsPlanned with rollback rehearsed
Policy driftWeekly review

KPIs and Signals

KPIDefinition
Ticket SLA compliancePercent of incidents and requests meeting SLA
Backlog healthAged tickets over threshold
SIP closure ratePercent of improvement actions closed by due date
Policy violationsCount and trend
Config backup currencyPercent devices with last 24h backup

Escalation

Functional SPOCService Lead (email/phone as per contact matrix)
Duty escalationService Manager → Account Lead → Executive Sponsor
Vendor escalationAs per vendor matrix; include ticket ref and evidence
Incident bridgeSpin up within 15 minutes for SEV1/SEV2; roles per playbook

Evidence and Records