The organization shall assess information security events and decide if they are to be categorized as information security incidents.
Last updated 2 years ago