51Ƶ

Incident Response Form Template for India

A standardized form designed for use in India to document and report security incidents in compliance with CERT-In guidelines and the Information Technology Act, 2000. This document facilitates the mandatory reporting of cyber security incidents within the required 6-hour timeframe while maintaining a comprehensive record of the incident details, response actions, and impact assessment. The form incorporates all necessary elements for regulatory compliance while serving as a crucial internal documentation tool for incident management, investigation, and post-incident analysis.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Get template free

Your data doesn't train Genie's AI

You keep IP ownership of your docs

4.6 / 5
4.6 / 5
4.8 / 5

What is a Incident Response Form?

The Incident Response Form is a critical document used to record and report security incidents in accordance with Indian legal requirements, particularly the CERT-In guidelines and Information Technology Act, 2000. This form must be utilized whenever a security incident occurs that falls within the scope of mandatory reporting requirements, including but not limited to data breaches, system compromises, and cyber attacks. The document captures essential information required for both regulatory compliance and internal incident management, ensuring organizations meet the strict 6-hour reporting timeline mandated by CERT-In while maintaining comprehensive incident documentation. The form serves as a foundational tool for incident response teams, providing a structured approach to incident documentation, facilitating communication between stakeholders, and supporting post-incident analysis and legal compliance.

What sections should be included in a Incident Response Form?

1. Incident Reference Details: Basic metadata including unique incident ID, date/time of report creation, and form completion status

2. Incident Reporter Information: Details of the person reporting the incident including name, role, contact information, and department

3. Incident Overview: High-level summary of the incident including type, severity level, and initial impact assessment

4. Incident Timeline: Chronological details including detection time, occurrence time (if known), and reporting time to authorities

5. Incident Classification: Categorization of the incident type according to CERT-In guidelines and internal classification system

6. Systems/Assets Affected: Identification of all systems, data, or assets impacted by the incident

7. Impact Assessment: Detailed assessment of the incident's impact on operations, data, customers, and regulatory compliance

8. Initial Response Actions: Documentation of immediate actions taken to contain and respond to the incident

9. Notification Details: Record of all internal and external notifications made, including to CERT-In and other regulatory bodies

10. Current Status: Present state of the incident and ongoing response efforts

What sections are optional to include in a Incident Response Form?

1. Data Breach Details: Specific section for incidents involving personal data breaches, required when sensitive personal data is compromised

2. Financial Impact Assessment: Detailed analysis of financial implications, recommended for incidents affecting financial systems or involving monetary loss

3. Third Party Involvement: Documentation of any third-party vendors or service providers involved in the incident or response

4. Legal/Regulatory Implications: Analysis of legal and regulatory requirements triggered by the incident, recommended for high-severity incidents

5. Media/PR Response: Communication strategy and public relations response plan, needed for incidents with potential public exposure

What schedules should be included in a Incident Response Form?

1. Appendix A - Evidence Collection Log: Detailed log of all evidence collected during the incident investigation

2. Appendix B - Communication Log: Record of all communications related to the incident

3. Appendix C - System Logs: Technical logs and system data relevant to the incident

4. Appendix D - Incident Response Team Details: List of team members involved in the response with their roles and contact information

5. Appendix E - Related Documents: References to associated documentation, including screenshots, reports, and correspondence

6. Schedule 1 - CERT-In Reporting Template: Standard template for mandatory reporting to CERT-In within 6 hours

7. Schedule 2 - Root Cause Analysis: Detailed analysis of the incident cause and contributing factors

Authors

Alex Denne

Head of Growth (Open Source Law) @ Genie AI | 3 x UCL-Certified in Contract Law & Drafting | 4+ Years Managing 1M+ Legal Documents

Jurisdiction

India

Publisher

Genie AI

Document Type

Incident Report

Cost

Free to use

Find the exact document you need

Patient Safety Incident Reporting Form

A standardized form for reporting patient safety incidents in Indian healthcare facilities, compliant with national healthcare regulations and safety standards.

Download

Health And Safety Incident Report Form

A standardized form for recording workplace health and safety incidents in compliance with Indian safety regulations, facilitating incident documentation and investigation.

Download

Hazard Report Form

A standardized hazard reporting document compliant with Indian workplace safety regulations for systematic identification and reporting of workplace safety concerns.

Download

Hazard Incident Report Form

A comprehensive incident reporting form for documenting workplace hazards and accidents in India, ensuring compliance with national safety regulations and documentation requirements.

Download

Work Place Injury Report Form

A standardized form for documenting workplace injuries in accordance with Indian labor laws, ensuring proper recording and reporting of occupational accidents and incidents.

Download

Employee Incident Report Form

A standardized Indian workplace incident reporting form for documenting accidents, injuries, and near-misses in compliance with Indian labor laws and safety regulations.

Download

Critical Incident Report Form

A standardized form for documenting critical incidents in Indian workplaces, ensuring compliance with national safety regulations and reporting requirements.

Download

Security Incident Report Form

An Indian-compliant Security Incident Report Form for documenting and reporting cybersecurity incidents under CERT-In guidelines and IT Act requirements.

Download

Incident Response Form

A standardized Indian incident response documentation form for reporting security incidents in compliance with CERT-In guidelines and IT Act requirements.

Download

Incident Investigation Form

A standardized form for documenting and investigating workplace incidents in compliance with Indian safety regulations and the Factories Act 1948.

Download
See more related templates

ұԾ’s Security Promise

Genie is the safest place to draft. Here’s how we prioritise your privacy and security.

Your documents are private:

We do not train on your data; ұԾ’s AI improves independently

All data stored on Genie is private to your organisation

Your documents are protected:

Your documents are protected by ultra-secure 256-bit encryption

We are ISO27001 certified, so your data is secure

Organizational security:

You retain IP ownership of your documents and their information

You have full control over your data and who gets to see it