CCI-000821
CCI-000821 Definition
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if the incident response capability is tested using [IR-03(01)_ODP; automated mechanisms used to test the incident response capability are defined].
Validation Procedures
Examine: [SELECT FROM: Incident response policy; contingency planning policy; procedures addressing incident response testing; procedures addressing contingency plan testing; incident response testing documentation; incident response test results; incident response test plan; incident response plan; contingency plan; system security plan; automated mechanisms supporting incident response tests; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with incident response testing responsibilities; organizational personnel with information security responsibilities]. Test: [SELECT FROM: Automated mechanisms that more thoroughly and effectively test the incident response capability].