ISM-0126

History

Priority
should
Nov 2018
Removed
Removed due to a merge of relevant content into security control 0125.
2017
Agencies should include, at a minimum, the following information in their register:• the date the cyber security incident was discovered• the date the cyber security incident occurred• a description of the cyber security incident, including the personnel and locations involved• the action taken• to whom the cyber security incident was reported• the file reference.
2015
Agencies should include, at a minimum, the following information in their register:• the date the cyber security incident was discovered• the date the cyber security incident occurred• a description of the cyber security incident, including the personnel and locations involved• the action taken• to whom the cyber security incident was reported• the file reference.
2010
Agencies should include, at minimum, the following information in their register:••••••the date the cyber security incident was discoveredthe date the cyber security incident occurreda description of the cyber security incident, including the personnel and locations involvedthe action takento whom the cyber security incident was reportedthe file reference.
2008
Agencies should include, at a minimum, the following information in their register: a. the date the ICT security incident was discovered b. the date the ICT security incident occurred c. a description of the ICT security incident, including the people and locations involved d. the action taken e. to whom the ICT security incident was reported f. the file reference.