Criteria for cybersecurity incident declaration are aligned with cyber risk prioritization criteria (RISK-3b)
Aligning incident declaration criteria with the risk criteria established in RISK-3b ensures that the organization is recognizing and addressing incidents that involve risks that the organization is particularly concerned about.
Related Practices · Dependency: Implementing this practice depends upon prior implementation of RISK-3b. · Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: RESPONSE-2a, RESPONSE-2c, RESPONSE-2e, RESPONSE-2h.