Cybersecurity incident response personnel are identified, and roles are assigned, at least in an ad hoc manner
Context and Guidance: Identify the roles and responsibilities necessary to perform cybersecurity incident response activities and ensure that staff are assigned to those roles and have the necessary skills. Staff should be provided sufficient autonomy and authority to carry out their duties. The organisation may create job descriptions for cybersecurity incident response roles and responsibilities and keep track of skill gaps and gaps in the availability of staff so that suitable personnel can be hired as needed.
Related Practices • Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: RESPONSE-3a, RESPONSE-3d, RESPONSE-3f, RESPONSE-3g, RESPONSE-3h, RESPONSE-3i.