Understanding cyber-incident disclosure
ID: e61d24d1-68f1-5e38-af7c-1f01d5a2b1ce
STIX ID: report--e61d24d1-68f1-5e38-af7c-1f01d5a2b1ce
Feed Name: WeLiveSecurity (ESET Research)
This article advises organizations on effective cyber-incident disclosure, emphasizing early legal counsel, understanding UK regulatory obligations (ICO/GDPR, eIDAS, PECR, NIS) and sector-specific reporting, and leveraging cyber insurance for legal and filing support. It recommends conducting tabletop exercises, considering law-enforcement engagement, and being aware that ransomware groups may weaponize disclosure requirements (e.g., reporting non-disclosing victims to regulators). The piece focuses on governance and preparedness rather than technical indicators or a specific incident.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
