Skip to main content

Repository → 💼 SOC 2 → 💼 CC7 System Operations → 💼 CC7.4 The entity responds to identified security incidents by executing a defined incident-response program to understand, contain, remediate, and communicate security incidents, as appropriate.

💼 CC7.4-14 Application of Sanctions

  • ID: /frameworks/soc-2/cc7/04/14

Description

The conduct of individuals and organizations operating under the authority of the entity and involved in the unauthorized use or disclosure of personal information is evaluated and, if appropriate, sanctioned in accordance with entity policies and legal and regulatory requirements.

Similar

  • Internal
    • ID: dec-c-7abaadfc

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance