ISO/IEC 27035
Information security incident management
Overview
Provides guidelines for information security incident management, including preparation, detection, assessment, response, and lessons learned. Covers the complete incident lifecycle from planning to post-incident activities.
Applicability
Cybersecurity incident detection, response, and recovery
Relevance to General Data Protection Regulation (GDPR)
Key Coverage Areas
Standard Sections & Chapters
Incident management planning
Detection and reporting
Assessment and decision
Responses
Principles of incident management
Guidelines to plan and prepare
Guidelines for ICT incident response operations
Related General Data Protection Regulation (GDPR) Articles
Article 33: Notification of a personal data breach to the supervisory authority
View Article →Incident management process
Implementation Guidance:
Use ISO 27035 for breach detection, assessment, and reporting
Quick Information
- Organization
- ISO/IEC
- Category
- Incident Management
- Certification
- Not available