NIST SP 800-61
Coordination, Sharing, Privacy/Breach

NIST SP 800-61 NISTSP61-7: Coordination, Information Sharing, Privacy and Breach Response

Coordinate with external parties and handle privacy and breach incidents per NIST SP 800-61 Rev 2 Chapter 4 (Coordination and Information Sharing). Coordination must address (a) coordination relationships per Section 4.1 (team-to-team + team-to-coordinating-team + coordinating-team-to-coordinating-team), (b) sharing agreements and reporting requirements per Section 4.2 (peer-to-peer + sector ISAC + national CSIRT + law enforcement + regulator + sub-processor and supply chain partner relationships + customer relationships), (c) information sharing techniques per Section 4.3 (ad-hoc + partially-automated + standardised through formats like STIX/TAXII), (d) granular information sharing per Section 4.4 (business impact + technical + general indicators) with appropriate redaction. Privacy and breach response: (a) integrate privacy team with security team for incidents involving personal data, (b) trigger breach notification obligations under applicable regimes (GDPR Article 33/34 + CCPA + state breach laws + sectoral laws + contract obligations), (c) preserve evidence of breach scope and root cause for regulator and individual notifications, (d) communicate with data subjects per applicable timing and content requirements.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.