ISO 27001 5.25 Assessment and Decision On Information Security Events Requirement:
"The organization shall assess information security events and decide if they are to be categorized as information security incidents."[1]
ISO 27001 5.25 Assessment and Decision On Information Security Events Requirement Explanation:
Information systems can log thousands of events not every event is an incident. The organization must define criteria for categorizing an event as an information security incident. This can be defined in the incident response plan.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you