Data breach response policy


Why it's needed:

A data breach occurs when sensitive, protected or confidential information is stolen, accessed, or used without authorization. Every U.S. state, the European Economic Area (EEA), and several other countries all legally mandate timely data breach disclosure.

Key points:

  • Vulnerabilities in data security audited and addressed.
  • A data breach policy documented, indicating what the organization will do to minimize the risk of a data breach and how it will respond if a breach does occur—including which governing law it will apply to its response plan.

