CCI-000849
CCI-000849 Definition
Update the incident response plan to address system and organizational changes or problems encountered during plan implementation, execution, or testing.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if the incident response plan is updated to address system and Organizational changes or problems encountered during plan implementation, execution, or testing.
Validation Procedures
Examine: [SELECT FROM: Incident response policy; procedures addressing incident response planning; incident response plan; system security plan; privacy plan; records of incident response plan reviews and approvals; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with incident response planning responsibilities; organizational personnel with information security and privacy responsibilities]. Test: [SELECT FROM: Organizational incident response plan and related organizational processes].