graphgrc

SCF - IRO-09 - Situational Awareness For Incidents

Mechanisms exist to document, monitor and report the status of cybersecurity & data privacy incidents to internal stakeholders all the way through the resolution of the incident.

Mapped framework controls

ISO 27002

NIST 800-53

SOC 2

Control questions

Does the organization document, monitor and report the status of cybersecurity & data privacy incidents to internal stakeholders all the way through the resolution of the incident?