💼 A.16.1.4 Assessment of and decision on information security events
- ID:
/frameworks/iso-iec-27001-2013/16/01/04
Description​
Information security events shall be assessed and it shall be decided if they are to be classified as information security incidents.
Similar​
- Internal
- ID:
dec-c-8798e659
- ID:
Similar Sections (Give Policies To)​
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| 💼 NIST CSF v1.1 → 💼 DE.AE-2: Detected events are analyzed to understand attack targets and methods | 18 | 24 | no data | ||
| 💼 NIST CSF v1.1 → 💼 DE.AE-4: Impact of events is determined | 13 | 14 | no data | ||
| 💼 NIST CSF v1.1 → 💼 RS.AN-2: The impact of the incident is understood | no data | ||||
| 💼 NIST CSF v1.1 → 💼 RS.AN-4: Incidents are categorized consistent with response plans | no data |
Sub Sections​
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|