Guest
Incident management procedure - treatment of minor events (3.3)
In chapter 3.3 the document talks about logging of minor events. Are we able to use the list of incidents to log the minor incident (when it happens the FIRST time)? Chapter 3.5 (learning from incidents) talks about adding minor incidents in the incident list after it happened twice. Would we be able to add minor incidents in general into that list or just minor events which happened twice in a specific period of time? If we aren’t able to fill it with both, do we have to make a separate list for chapter 3.3 „treatment of minor incidents“? A separate logging list I mean.
Assign topic to the user
Expert
Dejan Kosutic
Aug 23, 2018
Answer:
ISO 27001 is not specific on how to record the incidents, which means you can do it in any way that you see fit. This means you could log minor incidents that happen the first time in the Incident log, but in such case I would recommend that you mark separately first-time incidents from those that are happening repeatedly.
Comment as guest or Sign in
Aug 23, 2018
Aug 23, 2018
Aug 23, 2018