Member-only story

IS Breach Notification Timelines

Simplified version of information security breach notification timelines

In this story, we have tried to compile different regulations along with their information security breach notification timelines and additional notes. Each regulation may define the information security event, incident, and breach differently.

The table below describes the information security breach notification timelines for GLBA, NYDFS, DORA, PCI DSS, SOC 2, ISO 27001, HIPAA, HITRUST, HITECH, and GDPR.

Table- 1 Breach Notification Timelines

The table below describes the information security breach notification timelines for CCPA, CCPR, FedRAMP, FISMA, COPPA, BSA/AML, IRAP, NIST, HECVAT, and CSA STAR.

Table- 2Breach Notification Timelines — Continued

--

--

Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT
Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT

Written by Aakif Shaikh, CISSP, CEH, CHFI, CISA, GWAPT

Over 18 years of experience in a wide variety of technical domains within information security including information assurance, compliance, and risk management.

No responses yet