Under active development Content is continuously updated and improved

SIM-03Documentation and reporting of security incidents

>Control Description

After a security incident has been processed, the solution is documented in accordance with the contractual agreements and the report is sent to the affected customers for final acknowledgement or, if applicable, as confirmation. Additional criteria: The customer can either actively approve solutions or the solution is automatically approved after a certain period. Information on security incidents or confirmed security breaches is made available to all affected customers. The contract between the Cloud Service Provider and the cloud customer regulates which data is made available to the cloud customer for his own analysis in the event of security incidents.

Ask AI

Configure your API key to use AI features.