Skip to main content

💼 CC7.4 The entity responds to identified security incidents by executing a defined incident-response program to understand, contain, remediate, and communicate security incidents, as appropriate.

  • ID: /frameworks/soc-2/cc7/04

Description​

Empty...

Similar​

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CC7.4-1 Assigns Roles and Responsibilitiesno data
💼 CC7.4-2 Contains and Responds to Security Incidentsno data
💼 CC7.4-3 Mitigates Ongoing Security Incidentsno data
💼 CC7.4-4 Resolves Security Incidentsno data
💼 CC7.4-5 Restores Operationsno data
💼 CC7.4-6 Develops and Implements Communication Protocols for Security Incidentsno data
💼 CC7.4-7 Obtains Understanding of Nature of Incident and Determines Containment Strategyno data
💼 CC7.4-8 Remediates Identified Vulnerabilitiesno data
💼 CC7.4-9 Communicates Remediation Activitiesno data
💼 CC7.4-10 Evaluates the Effectiveness of Incident Responseno data
💼 CC7.4-11 Periodically Evaluates Incidentsno data
💼 CC7.4-12 Applies Breach Response Proceduresno data
💼 CC7.4-13 Communicates Unauthorized Use and Disclosureno data
💼 CC7.4-14 Application of Sanctionsno data