CCI-000809
CCI-000809 Definition
Develop and document procedures to facilitate the implementation of incident response policy and associated incident response controls.
Status | |
Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if: - incident response procedures to facilitate the implementation of the incident response policy and associated incident response controls are developed and documented. - the incident response procedures are disseminated to [IR-01_ODP[02]; personnel or roles to whom the incident response procedures are to be disseminated is/are defined].
Validation Procedures
Examine: [SELECT FROM: Incident response policy and procedures; system security plan; privacy plan; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with incident response responsibilities; organizational personnel with information security and privacy responsibilities].