graphgrc

SCF - IRO-06 - Incident Response Testing

Mechanisms exist to formally test incident response capabilities through realistic exercises to determine the operational effectiveness of those capabilities.

Mapped framework controls

ISO 27002

NIST 800-53

Control questions

Does the organization formally test incident response capabilities through realistic exercises to determine the operational effectiveness of those capabilities?