BIZOPS-53 Incident Communication

Estimated reading: 2 minutes 786 views

What is BIZOPS-53 Incident Communication Control?

Incident communication control is about implementing a process to rapidly notify internal and external stakeholders when an incident occurs. It helps engage all stakeholders when an event occurs.

Available tools in the marketplace

No tool recommendation is made for this section

Available templates

TrustCloud has a curated list of templates, internally or externally sourced, to help you get started. Click on the link for a downloadable version:

Control Implementation

To implement this control,

A communication plan should be documented in a procedure or template, which should include:

  • Targeted audience: this section should include who will be reached in the event of an incident or event.
  • Defining the key messages: this section should include the type of communication that will resonate with the stakeholder. Some examples of key messages
  • Creating an outreach plan: this section should include how the message will be delivered to the target audience.
  • Notification timeline: This section should define the timeline to notify and communicate the message.
  • Creating a plan for ad hoc incidents: this section should include a process for quickly addressing and communicating emergency incidents.

What evidence do auditors look for?

  1. A documented template or procedure of your communication plan

Evidence Example

  1. A documented template or procedure of your communication plan
    Here are links to examples of a template from Atlassian and an external template.The following screenshot shows an example of an incident communication plan.
    BIZOPS 53 Incident Communication

Join the conversation