Incident Response Plan

Operational process for detecting, containing, and resolving security incidents.

Effective: 2026-08-05

Back to Security Center

Lifecycle

Incident response follows preparation, detection, containment, eradication, recovery, and post-incident review phases.

Severity classification drives escalation, communication scope, and recovery priorities.

All incidents are documented with timelines, evidence, and corrective actions.

Communications

Internal and external notices are coordinated through designated incident leads.

Regulatory notifications are issued when required by law.

Post-incident learnings are tracked as governance tasks with owners and deadlines.