Track and report security incidents
CIP Requirements:
(CIP-008-05 R1)
Develop and maintain a cyber security incident response plan that addresses, at a minimum, procedures to classify events into cyber security incidents that contain auditable information on policy and procedures around promoting and prioritizing.
(CIP-008-05 R2)
Keep relevant historical documentation related to cyber security incidents offline and reportable for up to three calendar years.
