CCI-002816
CCI-002816 Definition
Provide information spillage response training according to an organization-defined frequency.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if information spillage response training is provided [IR-09(02)_ODP; frequency at which to provide information spillage response training is defined].
Validation Procedures
Examine: [SELECT FROM: Incident response policy; procedures addressing information spillage response training; information spillage response training curriculum; information spillage response training materials; incident response plan; system security plan; information spillage response training records; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with incident response training responsibilities; organizational personnel with information security responsibilities].