SOC 2 CC7.4: Responding to Security Incidents
SOC 2 CC7.4 requires a company to respond to security incidents through a defined incident-response program that understands, contains, remediates, ...
The Canadian Ransomware Paradox: Why Two Surveys Disagree on Payment
Two of the most-cited Canadian ransomware statistics flatly contradict each other.
SOC 2 Incident Response for On-Premise Environments
TL;DR IR maps to CC7.3 (security event evaluation, the triage discipline) and CC7.4 (defined response program with containment, mitigation, ...