CCI-002801
CCI-002801 Definition
Develop an incident response plan that defines the resources and management support needed to effectively maintain and mature an incident response capability.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if an incident response plan is developed that defines the resources and management support needed to effectively maintain and mature an incident response capability.
Validation Procedures
Examine: [SELECT FROM: Incident response policy; procedures addressing incident response planning; incident response plan; system security plan; privacy plan; records of incident response plan reviews and approvals; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with incident response planning responsibilities; organizational personnel with information security and privacy responsibilities]. Test: [SELECT FROM: Organizational incident response plan and related organizational processes].