Sekit CSF · Incident Response · Process
RCF-0260IR plan
The incident response plan is consistently followed when incidents occur
Mapping at a glance
RCF-0260IR planIncident Response · Process
RCF-0260 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.24Information security incident management planning and preparationsupportsFollowing the response plan and logging decisions as incidents unfold turns the written plan into a practice auditors can verify was used.A.5.26Response to information security incidentsequivalentFollowing the response plan and documenting decisions and timings as an incident unfolds is exactly the response activity this control requires.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Incident response plan
The plan defining how the company acts when a security incident occurs: who does what, who is notified, and within what timeframes.
From the Sekit evidence catalog
This topic through the other lenses
All Incident Response controls
Ask Sekura: “What evidence proves RCF-0260?”
Also via MCP, free with account