What it is
An incident response plan is a step-by-step guide that documents who will do what if a cyber security incident occurs.
Having a plan in place before an incident occurs will help you take control of the situation, navigate your way through and reduce the impact on your business.
How it works
Your plan will depend on the size, scale and operation of your business, but there are some standard elements to consider that will help in recovery.
How you want to document or format your plan is up to you. What’s most important is that:
- it’s available in hard copy and everyone knows where it is
- it’s easy to access
- it’s short and clear enough to read quickly and easily
- staff are familiar with it before they need to use it.
It’s likely that people who need to use the plan will be under pressure, so it’s important that the language is clear and simple, and the steps are easy to follow.
Creating an incident response plan
Take some time to go through a cyber security risk assessment for your business. This process will help you identify the specific risks that may apply to your business, and what to put in place to reduce the chance of an event occurring.