Information Security
Cyber Incident Response Checklist
🔒

Cyber Incident Response Checklist

1
Identify the nature of the cyber incident
2
Evaluate the severity of the cyber incident
3
Notify the appropriate response team
4
Approval: Response Team Manager
5
Document details of the cyber incident
6
Isolate the affected systems
7
Implement protective measures
8
Collect and preserve evidence
9
Identify the source of the breach
10
Remediate the infrastructure affected
11
Reset all compromised passwords
12
Update and patch vulnerable systems
13
Approval: IT Security Manager
14
Communicate the incident to stakeholders
15
Prepare a cyber incident report
16
Develop a recovery plan
17
Review and update cyber incident response plan based on lessons learnt
18
Approval: Chief Information Security Officer
19
Conduct a post-incident review
20
Monitor the environment for any signs of recurrence