Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

In 2.04.10, which is the appropriate answer if no breach has occurred since September 1, 2009?

0
Posted

In 2.04.10, which is the appropriate answer if no breach has occurred since September 1, 2009?

0

If your agency has had no system security breach to report since this requirement came into effect on September 1, 2009, but you do have a procedure in place to carry out the referenced notification requirements, then the appropriate answer would be “In compliance”. If there has been no breach, and you do not have such a procedure defined, then the appropriate answer would be the “No breach…” answer. When DIR reviews agency compliance based on IRDR Part 2 responses, the “No breach…:” answer will be considered equivalent to “In compliance”.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123