Cybersecurity & resilience

Incident response plan

Published Reviewed

An incident response plan is the prepared, rehearsed procedure an organisation follows when a security incident occurs: who decides, who investigates, who communicates, and which legal clocks start. The clocks are the hard part — NIS2’s 24-hour early warning, GDPR’s 72-hour breach notification, and DORA’s reporting timelines can all run from one event, each to a different authority with different content.

Läs definitionen på svenska: Incidenthanteringsplan

Also known as: Incident management · Incidenthantering

Where this term does its work

This definition is general information, not legal advice. Always verify the current official source.