Data Leak Incident Response Plan and Policy at CrowdHandler

CrowdHandler has policies in place to respond quickly in the event of a data leak or unauthorized access to ensure compliance with regulations and maintain client trust. Our data leak incident response plan includes:

Client Communication

If we detect or suspect a data leak including client or customer data, we will:

  • Notify the client contact(s) on record as soon as possible and no later than 5 days after discovery of the incident. Notifications will be sent by phone call, followed by written email.
  • Share details of the incident, the type and sensitivity of data affected, likely or known causes if determined, and steps already taken to respond.
  • Coordinate with clients on additional containment, eradication or remediation actions that should be taken. For example, disabling access or resetting user passwords if account data is involved.
  • Discuss expectations around regulatory reporting and notify any impacted data subjects or third parties on a mutually agreed timeline based on client preferences and legal obligations.
  • Where unauthorized access has occurred, conduct a full investigation into security practices to identify necessary improvements and help meet compliance frameworks. Clients will receive regular reports on the outcomes of these reviews and steps taken to bolster safeguards.

Technical Response

Our incident response team's technical actions in a data leak scenario will include:

  • Immediately restricting access and/or disabling any compromised systems, functions or access keys.
  • Conducting full vulnerability scans, log reviews and forensic analysis where data access or retrieval measures are unknown.
  • Taking additional steps like resetting credentials, account access reviews, adding security controls etc. depending on the breadth and sensitivity of the data exposed.
  • Quarantining or isolating any affected environments or functions until the source of leakage/access has been fully addressed.
  • Restoring lost or altered data from backups as close to the incident as possible if data integrity has been impacted.

Our data leak incident response plan is centered around client communication to maintain trust and transparency. In case of unauthorized access or data exposure, we aim to move rapidly to identify causes, contain threats, remediate damages, and repair impacted systems working closing with clients to address individual risks and needs. Regular review of policies and controls applies learnings from events to continue advancing security.