Skip to main content

💼 A.16.1.4 Assessment of and decision on information security events

  • ID: /frameworks/iso-iec-27001-2013/16/01/04

Description​

Information security events shall be assessed and it shall be decided if they are to be classified as information security incidents.

Similar​

  • Internal
    • ID: dec-c-8798e659

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 DE.AE-2: Detected events are analyzed to understand attack targets and methods1824no data
💼 NIST CSF v1.1 → 💼 DE.AE-4: Impact of events is determined1314no data
💼 NIST CSF v1.1 → 💼 RS.AN-2: The impact of the incident is understoodno data
💼 NIST CSF v1.1 → 💼 RS.AN-4: Incidents are categorized consistent with response plansno data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance