GDPR Data Breach Incident
GDPR Incident
Details
| ID | GDPR Data Breach |
|---|---|
| Group | incident |
| Version | -1 |
| From Version | 6.0.0 |
Layout Structure
Incident Info 9 sections
Case Details
| Field ID | Position |
|---|---|
| type | Col 0-2, Height: 24 |
| severity | Col 0-2, Height: 24 |
| owner | Col 0-2, Height: 24 |
| dbotsource | Col 0-2, Height: 24 |
| sourcebrand | Col 0-2, Height: 24 |
| sourceinstance | Col 0-2, Height: 24 |
| playbookid | Col 0-2, Height: 24 |
Notes
Work Plan
Linked Incidents
Child Incidents
Team Members
Timeline Information
| Field ID | Position |
|---|---|
| occurred | Col 0-1, Height: 24 |
| dbotcreated | Col 1-2, Height: 24 |
| dbotmodified | Col 0-1, Height: 24 |
| dbotclosed | Col 1-2, Height: 24 |
| dbotduedate | Col 0-2, Height: 24 |
Closing Information
| Field ID | Position |
|---|---|
| dbotclosed | Col 0-2, Height: 24 |
| closereason | Col 0-2, Height: 24 |
| closenotes | Col 0-2, Height: 24 |
Evidence
Data Breach Information 4 sections
Data Breach Information
The GDPR defines a "personal data breach" in Article 4(12) as: "A breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, personal data transmitted, stored or otherwise processed." Art. 4 - https://gdpr-info.eu/art-4-gdpr/
| Field ID | Position |
|---|---|
| sectorofaffectedparty | Col 0-2, Height: 24 |
| whereisdatahosted | Col 2-4, Height: 24 |
| sizenumberofemployees | Col 0-2, Height: 24 |
| maliciouscauseifthecauseisamaliciousattack | Col 2-4, Height: 24 |
| sizeturnover | Col 0-2, Height: 24 |
| likelyimpact | Col 2-4, Height: 24 |
| countrywherebusinesshasitsmainestablishment | Col 0-2, Height: 24 |
| possiblecauseofthebreach | Col 2-4, Height: 24 |
| countrywherethebreachtookplace | Col 0-2, Height: 24 |
| dataencryptionstatus | Col 2-4, Height: 24 |
| datetimeofthebreach | Col 0-2, Height: 24 |
| affecteddata | Col 2-4, Height: 24 |
| occurred | Col 0-2, Height: 24 |
| isthedatasubjecttodpia | Col 2-4, Height: 24 |
| approximatenumberofaffecteddatasubjects | Col 0-2, Height: 24 |
| companyhasinsuranceforthebreach | Col 2-4, Height: 24 |
| measurestomitigate | Col 0-4, Height: 24 |
Details of Company
Details of the breached company
| Field ID | Position |
|---|---|
| companyname | Col 0-2, Height: 24 |
| companyaddress | Col 0-2, Height: 24 |
| companypostalcode | Col 0-2, Height: 24 |
| companycity | Col 0-2, Height: 24 |
| companycountry | Col 0-2, Height: 24 |
Contact person (to obtain complementary information)
A controller or processor may have a Data Protection Officer (DPO), either as required by Article 37, or voluntarily as a matter of good practice. Art. 37 - https://gdpr-info.eu/art-37-gdpr/
| Field ID | Position |
|---|---|
| contactname | Col 0-2, Height: 24 |
| contactaddress | Col 0-2, Height: 24 |
| postalcode | Col 0-2, Height: 24 |
| city | Col 0-2, Height: 24 |
| country | Col 0-2, Height: 24 |
| dpoemailaddress | Col 0-2, Height: 24 |
| telephoneno | Col 0-2, Height: 24 |
Affected Individuals Contact Information
Affected individuals contact information. Used in case the breach is causing high risk to individuals.
| Field ID | Position |
|---|---|
| affectedindividualscontactinformation | Col 0-4, Height: 110 |
War Room 0 sections
No sections defined.
Work Plan 0 sections
No sections defined.
Evidence Board 0 sections
No sections defined.
Related Incidents 0 sections
No sections defined.
Canvas 0 sections
No sections defined.
{ "id": "GDPR Data Breach", "group": "incident", "name": "GDPR Data Breach Incident", "description": "", "version": -1, "fromVersion": "6.0.0", "detailsV2": { "tabs": [ { "id": "caseinfoid", "name": "Incident Info", "sections": [ { "displayType": "ROW", "h": 2, "i": "caseinfoid-fce71720-98b0-11e9-97d7-ed26ef9e46c8", "isVisible": true, "items": [ { "endCol": 2, "fieldId": "type", "height": 24, "id": "incident-type-field", "index": 0, "startCol": 0 }, { "endCol": 2, "fieldId": "severity", "height": 24, "id": "incident-severity-field", "index": 1, "startCol": 0 }, { "endCol": 2, "fieldId": "owner", "height": 24, "id": "incident-owner-field", "index": 2, "startCol": 0 }, { "endCol": 2, "fieldId": "dbotsource", "height": 24, "id": "incident-source-field", "index": 3, "startCol": 0 }, { "endCol": 2, "fieldId": "sourcebrand", "height": 24, "id": "incident-sourceBrand-field", "index": 4, "startCol": 0 }, { "endCol": 2, "fieldId": "sourceinstance", "height": 24, "id": "incident-sourceInstance-field", "index": 5, "startCol": 0 }, { "endCol": 2, "fieldId": "playbookid", "height": 24, "id": "incident-playbookId-field", "index": 6, "startCol": 0 } ], "moved": false, "name": "Case Details", "static": false, "w": 1, "x": 0, "y": 0 }, { "h": 2, "i": "caseinfoid-61263cc0-98b1-11e9-97d7-ed26ef9e46c8", "moved": false, "name": "Notes", "static": false, "type": "notes", "w": 1, "x": 1, "y": 2 }, { "displayType": "ROW", "h": 2, "i": "caseinfoid-6aabad20-98b1-11e9-97d7-ed26ef9e46c8", "moved": false, "name": "Work Plan", "static": false, "type": "workplan", "w": 1, "x": 2, "y": 0 }, { "displayType": "ROW", "h": 2, "i": "caseinfoid-770ec200-98b1-11e9-97d7-ed26ef9e46c8", "isVisible": true, "moved": false, "name": "Linked Incidents", "static": false, "type": "linkedIncidents", "w": 1, "x": 0, "y": 4 }, { "displayType": "ROW", "h": 2, "i": "caseinfoid-842632c0-98b1-11e9-97d7-ed26ef9e46c8", "moved": false, "name": "Child Incidents", "static": false, "type": "childInv", "w": 1, "x": 1, "y": 4 }, { "displayType": "ROW", "h": 2, "hideName": false, "i": "caseinfoid-7717e580-9bed-11e9-9a3f-8b4b2158e260", "moved": false, "name": "Team Members", "static": false, "type": "team", "w": 1, "x": 0, "y": 2 }, { "displayType": "CARD", "h": 2, "i": "caseinfoid-ac32f620-a0b0-11e9-b27f-13ae1773d289", "items": [ { "endCol": 1, "fieldId": "occurred", "height": 24, "id": "incident-occurred-field", "index": 0, "startCol": 0 }, { "endCol": 2, "fieldId": "dbotcreated", "height": 24, "id": "incident-created-field", "index": 0, "startCol": 1 }, { "endCol": 1, "fieldId": "dbotmodified", "height": 24, "id": "incident-modified-field", "index": 1, "startCol": 0 }, { "endCol": 2, "fieldId": "dbotclosed", "height": 24, "id": "incident-closed-field", "index": 1, "startCol": 1 }, { "endCol": 2, "fieldId": "dbotduedate", "height": 24, "id": "incident-dueDate-field", "index": 2, "startCol": 0 } ], "moved": false, "name": "Timeline Information", "static": false, "w": 1, "x": 1, "y": 0 }, { "displayType": "ROW", "h": 2, "i": "caseinfoid-88e6bf70-a0b1-11e9-b27f-13ae1773d289", "isVisible": true, "items": [ { "endCol": 2, "fieldId": "dbotclosed", "height": 24, "id": "incident-dbotClosed-field", "index": 0, "startCol": 0 }, { "endCol": 2, "fieldId": "closereason", "height": 24, "id": "incident-closeReason-field", "index": 1, "startCol": 0 }, { "endCol": 2, "fieldId": "closenotes", "height": 24, "id": "incident-closeNotes-field", "index": 2, "startCol": 0 } ], "moved": false, "name": "Closing Information", "static": false, "w": 1, "x": 2, "y": 4 }, { "h": 2, "hideName": false, "i": "caseinfoid-736cd260-dd29-11e9-b483-696feb5a142f", "items": [], "maxW": 3, "minH": 1, "minW": 1, "moved": false, "name": "Evidence", "static": false, "type": "evidence", "w": 1, "x": 2, "y": 2 } ], "type": "custom" }, { "hidden": false, "id": "sfmcsjvzpo", "name": "Data Breach Information", "sections": [ { "description": "The GDPR defines a \"personal data breach\" in Article 4(12) as:\n\"A breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorized disclosure of, or access to, personal data transmitted, stored or otherwise processed.\"\nArt. 4 - https://gdpr-info.eu/art-4-gdpr/", "displayType": "CARD", "h": 3, "hideName": false, "i": "sfmcsjvzpo-824b5140-d878-11e9-b030-ad5c55d12ecb", "items": [ { "endCol": 2, "fieldId": "sectorofaffectedparty", "height": 24, "id": "b390b0b0-d878-11e9-b030-ad5c55d12ecb", "index": 0, "startCol": 0 }, { "endCol": 4, "fieldId": "whereisdatahosted", "height": 24, "id": "71feb710-d881-11e9-b030-ad5c55d12ecb", "index": 0, "startCol": 2 }, { "endCol": 2, "fieldId": "sizenumberofemployees", "height": 24, "id": "b88bde00-d878-11e9-b030-ad5c55d12ecb", "index": 1, "startCol": 0 }, { "endCol": 4, "fieldId": "maliciouscauseifthecauseisamaliciousattack", "height": 24, "id": "7e0ef100-d881-11e9-b030-ad5c55d12ecb", "index": 1, "startCol": 2 }, { "endCol": 2, "fieldId": "sizeturnover", "height": 24, "id": "ba6028d0-d878-11e9-b030-ad5c55d12ecb", "index": 2, "startCol": 0 }, { "endCol": 4, "fieldId": "likelyimpact", "height": 24, "id": "8362ecb0-d881-11e9-b030-ad5c55d12ecb", "index": 2, "startCol": 2 }, { "endCol": 2, "fieldId": "countrywherebusinesshasitsmainestablishment", "height": 24, "id": "be9f0b00-d878-11e9-b030-ad5c55d12ecb", "index": 3, "startCol": 0 }, { "endCol": 4, "fieldId": "possiblecauseofthebreach", "height": 24, "id": "765232b0-d881-11e9-b030-ad5c55d12ecb", "index": 3, "startCol": 2 }, { "dropEffect": "move", "endCol": 2, "fieldId": "countrywherethebreachtookplace", "height": 24, "id": "c76bb2b0-d878-11e9-b030-ad5c55d12ecb", "index": 4, "listId": "sfmcsjvzpo-824b5140-d878-11e9-b030-ad5c55d12ecb", "startCol": 0 }, { "endCol": 4, "fieldId": "dataencryptionstatus", "height": 24, "id": "8c74dac0-d881-11e9-b030-ad5c55d12ecb", "index": 4, "startCol": 2 }, { "endCol": 2, "fieldId": "datetimeofthebreach", "height": 24, "id": "cb336910-d878-11e9-b030-ad5c55d12ecb", "index": 5, "startCol": 0 }, { "endCol": 4, "fieldId": "affecteddata", "height": 24, "id": "86c9e570-d881-11e9-b030-ad5c55d12ecb", "index": 5, "startCol": 2 }, { "endCol": 2, "fieldId": "occurred", "height": 24, "id": "69fe3900-d881-11e9-b030-ad5c55d12ecb", "index": 6, "startCol": 0 }, { "dropEffect": "move", "endCol": 4, "fieldId": "isthedatasubjecttodpia", "height": 24, "id": "91d8b4f0-d881-11e9-b030-ad5c55d12ecb", "index": 6, "listId": "sfmcsjvzpo-a02fd1a0-d881-11e9-b030-ad5c55d12ecb", "startCol": 2 }, { "dropEffect": "move", "endCol": 2, "fieldId": "approximatenumberofaffecteddatasubjects", "height": 24, "id": "6e9f5f70-d881-11e9-b030-ad5c55d12ecb", "index": 7, "listId": "sfmcsjvzpo-824b5140-d878-11e9-b030-ad5c55d12ecb", "startCol": 0 }, { "endCol": 4, "fieldId": "companyhasinsuranceforthebreach", "height": 24, "id": "976a2ed0-d881-11e9-b030-ad5c55d12ecb", "index": 7, "startCol": 2 }, { "dropEffect": "move", "endCol": 4, "fieldId": "measurestomitigate", "height": 24, "id": "9c0c8dc0-d881-11e9-b030-ad5c55d12ecb", "index": 8, "listId": "sfmcsjvzpo-824b5140-d878-11e9-b030-ad5c55d12ecb", "startCol": 0 } ], "maxW": 3, "minH": 1, "minW": 1, "moved": false, "name": "Data Breach Information", "static": false, "w": 2, "x": 0, "y": 0 }, { "description": "Details of the breached company", "displayType": "ROW", "h": 3, "hideName": false, "i": "sfmcsjvzpo-a02fd1a0-d881-11e9-b030-ad5c55d12ecb", "items": [ { "endCol": 2, "fieldId": "companyname", "height": 24, "id": "373d1990-d882-11e9-b030-ad5c55d12ecb", "index": 0, "startCol": 0 }, { "endCol": 2, "fieldId": "companyaddress", "height": 24, "id": "39369fa0-d882-11e9-b030-ad5c55d12ecb", "index": 1, "startCol": 0 }, { "endCol": 2, "fieldId": "companypostalcode", "height": 24, "id": "3b952910-d882-11e9-b030-ad5c55d12ecb", "index": 2, "startCol": 0 }, { "endCol": 2, "fieldId": "companycity", "height": 24, "id": "3de581b0-d882-11e9-b030-ad5c55d12ecb", "index": 3, "startCol": 0 }, { "endCol": 2, "fieldId": "companycountry", "height": 24, "id": "3fce3ee0-d882-11e9-b030-ad5c55d12ecb", "index": 4, "startCol": 0 } ], "maxW": 3, "minH": 1, "minW": 1, "moved": false, "name": "Details of Company", "static": false, "w": 1, "x": 2, "y": 0 }, { "description": "A controller or processor may have a Data Protection Officer (DPO), either as required by Article 37, or voluntarily as a matter of good practice.\nArt. 37 - https://gdpr-info.eu/art-37-gdpr/", "displayType": "ROW", "h": 3, "hideName": false, "i": "sfmcsjvzpo-5c47aca0-d882-11e9-b030-ad5c55d12ecb", "items": [ { "endCol": 2, "fieldId": "contactname", "height": 24, "id": "80ebb5b0-d882-11e9-b030-ad5c55d12ecb", "index": 0, "startCol": 0 }, { "dropEffect": "move", "endCol": 2, "fieldId": "contactaddress", "height": 24, "id": "83098ca0-d882-11e9-b030-ad5c55d12ecb", "index": 1, "listId": "sfmcsjvzpo-5c47aca0-d882-11e9-b030-ad5c55d12ecb", "startCol": 0 }, { "endCol": 2, "fieldId": "postalcode", "height": 24, "id": "86b27060-d882-11e9-b030-ad5c55d12ecb", "index": 2, "startCol": 0 }, { "endCol": 2, "fieldId": "city", "height": 24, "id": "8a261350-d882-11e9-b030-ad5c55d12ecb", "index": 3, "startCol": 0 }, { "endCol": 2, "fieldId": "country", "height": 24, "id": "8d6deb50-d882-11e9-b030-ad5c55d12ecb", "index": 4, "startCol": 0 }, { "endCol": 2, "fieldId": "dpoemailaddress", "height": 24, "id": "94f541c0-d882-11e9-b030-ad5c55d12ecb", "index": 5, "startCol": 0 }, { "endCol": 2, "fieldId": "telephoneno", "height": 24, "id": "98123930-d882-11e9-b030-ad5c55d12ecb", "index": 6, "startCol": 0 } ], "maxW": 3, "minH": 1, "minW": 1, "moved": false, "name": "Contact person (to obtain complementary information)", "static": false, "w": 1, "x": 0, "y": 3 }, { "description": "Affected individuals contact information. Used in case the breach is causing high risk to individuals.", "displayType": "ROW", "h": 3, "hideItemTitleOnlyOne": true, "hideName": false, "i": "sfmcsjvzpo-9d8332c0-d882-11e9-b030-ad5c55d12ecb", "items": [ { "endCol": 4, "fieldId": "affectedindividualscontactinformation", "height": 110, "id": "bbf05a30-d882-11e9-b030-ad5c55d12ecb", "index": 0, "startCol": 0 } ], "maxW": 3, "minH": 1, "minW": 1, "moved": false, "name": "Affected Individuals Contact Information", "static": false, "w": 2, "x": 1, "y": 3 } ], "type": "custom" }, { "id": "warRoom", "name": "War Room", "type": "warRoom" }, { "id": "workPlan", "name": "Work Plan", "type": "workPlan" }, { "id": "evidenceBoard", "name": "Evidence Board", "type": "evidenceBoard" }, { "id": "relatedIncidents", "name": "Related Incidents", "type": "relatedIncidents" }, { "id": "canvas", "name": "Canvas", "type": "canvas" } ] }, "edit": { "sections": [ { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "name": "Basic Information", "type": "", "isVisible": true, "readOnly": false, "fields": [ { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_name", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_occurred", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_reminder", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_owner", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_roles", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_type", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_severity", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_playbookid", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_labels", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_phase", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_details", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_attachment", "isVisible": true } ], "description": "", "query": null, "queryType": "" }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "name": "Mandatory Information", "type": "", "isVisible": true, "readOnly": false, "fields": [ { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_companyname", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_contactname", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_dpoemailaddress", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_countrywherethebreachtookplace", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_datetimeofthebreach", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_affecteddata", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_approximatenumberofaffecteddatasubjects", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_dataencryptionstatus", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_whereisdatahosted", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_possiblecauseofthebreach", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_maliciouscauseifthecauseisamaliciousattack", "isVisible": true }, { "id": "", "version": 0, "modified": "0001-01-01T00:00:00Z", "fieldId": "incident_affectedindividualscontactinformation", "isVisible": true } ], "description": "Please fill in mandatory information about the suspected breach. Later, you can fill in more incident fields in the summary page based on your knowledge.", "query": null, "queryType": "" } ] }, "marketplaces": ["xsoar"] }