CCI-002798
CCI-002798 Definition
Develop an incident response plan that meets the unique requirements of the organization, which relate to mission, size, structure, and functions.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if an incident response plan is developed that meets the unique requirements of the organization with regard to mission, size, structure, and functions
Validation Procedures
Examine: [SELECT FROM: Incident response policy; procedures addressing incident response planning; incident response plan; system security plan; privacy plan; records of incident response plan reviews and approvals; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with incident response planning responsibilities; organizational personnel with information security and privacy responsibilities]. Test: [SELECT FROM: Organizational incident response plan and related organizational processes].