The document provides an overview of Aon's ransomware response and mitigation strategies based on their experiences responding to ransomware incidents for clients. It discusses trends they have seen in ransomware attacks, including common infection vectors and techniques used by attackers. The document also outlines Aon's incident response process, including forensic data collection and analysis, containment activities, and eradication strategies. Finally, it proposes a proactive mitigation strategy developed by Aon that includes establishing network baselines, understanding existing security controls, and developing a security reference architecture.