Personally Identifiable Information: 04. Responding to a Data Breach
7 min! Run Time
Employees
only
Provided
What you'll learn
Description
Even with preventative steps in place, data breaches and leaks still happen. Part four of this series is about what your organization does in the hours and days that follow.
What this course covers:
- Preparing your organization for potential data breaches
- Detecting a breach and verifying its authenticity
- Isolating and containing the incident
- Alerting the appropriate authorities
- Building a communication strategy for those affected
The response instalment of the PII series, written for incident leads and managers who need to act swiftly and minimize the damage of a breach.
System Requirements
See System Requirements in the Coggno Knowledge Base
Author
Frequently Asked Questions
This installment addresses what an organization does in the hours and days after a data breach, working from the premise that even with preventative steps in place, breaches and leaks still happen regardless. This closing installment shifts the series' focus from prevention toward the response that follows once a breach occurs.
The course covers preparing your organization for potential data breaches, then detecting a breach and verifying its authenticity, before moving into isolating and containing the incident once it has been confirmed. These early steps set the stage for the containment and communication work covered later in the course.
Yes, it covers alerting the appropriate authorities as part of the incident response process, positioning notification as a required step that follows once a breach has been contained by the response team. This step is presented alongside containment as part of a coordinated response to a confirmed breach.
The course covers building a communication strategy for those affected, treating outreach to impacted individuals as a distinct task that sits alongside containment and authority notification in the response plan. Communication is treated as its own skill, separate from the technical work of containing an incident.
It is written for incident leads and managers who need to act swiftly and minimize the damage of a breach, closing out the PII series with a response-focused module built for action. This closes out the series' progression from introduction through regulation, protection and now response.