A.5.24 Information Security Incident Management Planning and Preparation
Control Objective
The organisation shall plan and prepare for managing information security incidents by defining, establishing and communicating information security incident management processes, roles and responsibilities.
Policy Statement
anDREa ensures structural readiness for security incidents by defining and maintaining comprehensive incident response procedures, communication channels, and clear organizational roles.
The core framework for incident readiness, escalation, and responsibility allocation is established within the Disaster Recovery Plan.
Incident Readiness and Framework Execution
To maintain readiness, anDREa's incident management strategy is operationalized across distinct phases:
- Roles and Responsibilities: Standardized incident response roles, escalation paths, and decision-making authorities are defined inside the Disaster Recovery Plan.
- Communication Protocols: Internal and external communication channels—including mandatory regulatory reporting lines under NIS 2 and GDPR—are pre-configured and documented.
- Continuous Alignment: Detailed execution procedures for technical assessment, containment, mitigation, and post-incident reviews are managed via the subsequent incident response controls: