SIM-03—Documentation and reporting of security incidents
>Control Description
After a security incident has been processed, the solution is documented in accordance with the contractual agreements and the report is sent to the affected customers for final acknowledgement or, if applicable, as confirmation.
Additional criteria: The customer can either actively approve solutions or the solution is automatically approved after a certain period.
Information on security incidents or confirmed security breaches is made available to all affected customers.
The contract between the Cloud Service Provider and the cloud customer regulates which data is made available to the cloud customer for his own analysis in the event of security incidents.
Ask AI
Configure your API key to use AI features.