CCI-002805
CCI-002805 Definition
The organization responds to information spills by identifying the specific information involved in the information system contamination.
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
The organization being inspected/assessed documents within their incident response plan, a process to identify the specific information involved in the information system contamination.
Validation Procedures
The organization conducting the inspection/assessment obtains and examines the incident response plan as well as after action reports of incidents to ensure that specific information involved in the information system contamination is identified.
Compelling Evidence
1.) Signed and dated Incident Response Plan, referencing information system contamination section