unified

UC-GOV-35 — Maintain incident response policy and procedures

Establish, document, and disseminate an incident response policy and supporting procedures that define what constitutes a security incident, roles, responsibilities, and authorities, and requirements for detection, internal reporting, handling, escalation, and post-incident review. Review and update the policy and procedures at defined intervals and after significant incidents or exercises.

Record JSON · Open in map · Data retrieval guide

Catalog revision: f368a6cce277037e4b1e1ff46004e3acd295f96c9ac63a411a0e45775a7f468e. A connection does not establish full coverage.

Attributes

domain
Governance, Policy & Oversight
type
preventive
category
administrative

Details

unified_id
UC-GOV-35
title
Maintain incident response policy and procedures
statement
Establish, document, and disseminate an incident response policy and supporting procedures that define what constitutes a security incident, roles, responsibilities, and authorities, and requirements for detection, internal reporting, handling, escalation, and post-incident review. Review and update the policy and procedures at defined intervals and after significant incidents or exercises.
domain
Governance, Policy & Oversight
control_type
preventive
control_category
administrative
members
  • framework
    nist-800-53
    control_id
    IR-1
    coverage
    full
    relationship
    superset_of
  • framework
    nis2
    control_id
    NIS2-Art21b
    coverage
    partial
    delta
    operational incident detection, handling, and response capability
    relationship
    intersects_with
guidance

    Source

    No record-specific source URL is provided.

    Connections