...
Expand | ||
---|---|---|
| ||
Does your organisation have a cyber incident response and forensic capability (either internally or via a third party or cyber insurance policy)? Cyber certificate of assurance and associated insurance is delivered as part of the Cyber Essentials schemeYes, a copy of our cyber and data insurance certificate is available on request from customers@commonplace.is. |
Expand | ||
---|---|---|
| ||
Does your organisation have a process for employees, contractors, and suppliers to report suspected or known information security breaches and weaknesses? We log every data breach or suspected data breach. We track the date, severity and resolution. Upon becoming aware of a security incident an assessment must be made to understand if a data breach has occurred, and if so to what extent. The assessment is broken up into 2 stages: triage and investigation. The purpose of this is to ensure that appropriate mechanisms are in place to identify when a data breach has occurred with a proportional amount of resource. The objectives of this procedure are:
We also have a guidance document as part of our Information Security Management System. |
...
Expand | ||
---|---|---|
| ||
Does your organisation have an approved Business Continuity Plan to ensure the continuity of service in a disaster? Yes. Does your organisation's business continuity plan address the backup and restoration of all client data and operation of business activities from an alternative site? Does your organisation's plan include the maintenance of security controls in a disaster?, a copy of the Business Continuity Plan is available upon request from customers@commonplace.is |