A cyber security incident register contains the following for each cyber security incident:
- the date the cyber security incident occurred
- the date the cyber security incident was discovered
- a description of the cyber security incident
- any actions taken in response to the cyber security incident
- to whom the cyber security incident was reported.