[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"detail-sidebar-cat-1-en-105":3,"doc-seo-253441-105":53,"doc-detail-253441-en":126},{"code":4,"msg":5,"data":6},0,"success",[7,14,19,24,29,34,39,44,49],{"id":8,"doc_module":9,"doc_module_name":10,"category_name":11,"show_sort_weight":12,"slug":13},11,1,"Template","Presentations",90,"presentations",{"id":15,"doc_module":9,"doc_module_name":10,"category_name":16,"show_sort_weight":17,"slug":18},12,"Resumes",80,"resumes",{"id":20,"doc_module":9,"doc_module_name":10,"category_name":21,"show_sort_weight":22,"slug":23},14,"Invoices",70,"invoices",{"id":25,"doc_module":9,"doc_module_name":10,"category_name":26,"show_sort_weight":27,"slug":28},15,"Posters",60,"posters",{"id":30,"doc_module":9,"doc_module_name":10,"category_name":31,"show_sort_weight":32,"slug":33},16,"Social Media",50,"social-media",{"id":35,"doc_module":9,"doc_module_name":10,"category_name":36,"show_sort_weight":37,"slug":38},17,"Forms",40,"forms",{"id":40,"doc_module":9,"doc_module_name":10,"category_name":41,"show_sort_weight":42,"slug":43},18,"Letters",30,"letters",{"id":45,"doc_module":9,"doc_module_name":10,"category_name":46,"show_sort_weight":47,"slug":48},21,"Paper Templates",5,"papers-templates",{"id":50,"doc_module":9,"doc_module_name":10,"category_name":51,"show_sort_weight":4,"slug":52},158,"General","general-158",{"code":4,"msg":54,"data":55},"ok",{"site_id":56,"language":57,"slug":58,"title":59,"keywords":60,"description":61,"schema_data":62,"social_meta":119,"head_meta":121,"extra_data":123,"updated_unix":125},105,"en","it-security-incident-response-plan-security-incident-response-communications-plan","IT Security Incident Response Plan - Security Incident Response Communications Plan","","IT Security Incident Response Plan sets procedures to protect the confidentiality, integrity, and availability of Sarasota County Schools (SCS) data. It defines responsibilities for all SCS employees to identify, report, and handle both electronic and physical security incidents without replacing required Florida or federal laws. The plan organizes response into four stages: identification, investigation, notification/alerting and responding, and reporting/documentation. It includes communications, escalation, risk and classification levels, and incident reporting/report forms.",{"@graph":63,"@context":118},[64,80,101],{"@type":65,"itemListElement":66},"BreadcrumbList",[67,71,74,77],{"item":68,"name":69,"@type":70,"position":9},"https://docshare.wps.com","Home","ListItem",{"item":72,"name":10,"@type":70,"position":73},"https://docshare.wps.com/template/",2,{"item":75,"name":51,"@type":70,"position":76},"https://docshare.wps.com/template/general/",3,{"item":78,"name":59,"@type":70,"position":79},"https://docshare.wps.com/template/it-security-incident-response-plan-security-incident-response-communications-plan/253441/",4,{"url":78,"name":59,"@type":81,"image":82,"author":87,"headline":59,"publisher":90,"fileFormat":93,"inLanguage":57,"description":61,"dateModified":94,"datePublished":95,"encodingFormat":93,"isAccessibleForFree":96,"interactionStatistic":97},"DigitalDocument",{"url":83,"@type":84,"width":85,"height":86},"https://docshare.wps.com/thumbnails/it-security-incident-response-plan-security-incident-response-communications-plan/253441.png","ImageObject",442,249,{"name":88,"@type":89},"Nguyễn Văn Học","Person",{"url":68,"name":91,"@type":92},"DocShare","Organization","application/pdf","2026-09-20","2026-09-13",true,{"@type":98,"interactionType":99,"userInteractionCount":73},"InteractionCounter",{"@type":100},"ViewAction",{"@type":102,"mainEntity":103},"FAQPage",[104,110,114],{"name":105,"@type":106,"acceptedAnswer":107},"Who is responsible for identifying and reporting security incidents in SCS?","Question",{"text":108,"@type":109},"All SCS employees must identify and report possible security incidents. Reports are made to the Security Incident Response Team during normal business hours, or to the employee’s supervisor after hours.","Answer",{"name":111,"@type":106,"acceptedAnswer":112},"What kinds of events should be reported as potential security incidents?",{"text":113,"@type":109},"Examples include unauthorized password changes, browser pop-ups that cannot be closed, workstation infection with malicious software, missing physical files with sensitive classifications, loss or theft of keys/ID/proxy cards, loss or theft of computer hardware, and loss or theft of mobile devices.",{"name":115,"@type":106,"acceptedAnswer":116},"How is the IT security incident response process organized?",{"text":117,"@type":109},"The plan organizes response into four stages: incident identification/containment/classification, investigation, notification/alerting and responding, and reporting/documentation. It also defines risk and classification levels plus escalation and communications priorities.","https://schema.org",{"og:url":78,"og:type":120,"og:title":59,"og:site_name":91,"og:description":61},"article",{"robots":122,"canonical":78},"index,follow",{"doc_id":124,"site_id":56},253441,1789266036,{"code":4,"msg":5,"data":127},{"doc_id":124,"user_id":128,"nickname":88,"user_avatar":129,"doc_module":9,"category_id":50,"category_name":51,"doc_title":59,"doc_description":61,"doc_content":130,"file_id":131,"file_url":132,"file_type":133,"file_size":134,"view_count":73,"is_deleted":4,"is_public":9,"is_downloadable":9,"audit_status":9,"page_count":8,"language":135,"language_code":57,"site_id":56,"html_lang":57,"table_of_contents":136,"faqs":137,"seo_title":138,"seo_description":61,"update_tm":125,"read_time":79},1374402739827,"https://ap-avatar.wpscdn.com/avatar/14000c97e7351f1a627?x-image-process=image/resize,m_fixed,w_180,h_180&k=1787885694763230660","Information Technology Security Incident Response Plan (SIRP)  \nTable of Contents  \nPurpose ......................................................................................................................................................... 1  \nIncident Identification, Containment, and Classification (stage one) ........................................................... 1  \nRisk Levels ................................................................................................................................................. 3  \nClassification Levels* ................................................................................................................................ 4  \nInvestigation (stage two) .............................................................................................................................. 4  \nNotification/Alerting and Responding (stage three) .................................................................................... 4  \nEscalation .................................................................................................................................................. 5  \nReporting and Documentation (stage four) .................................................................................................. 5  \nIT Security Incident Response Communications Plan ................................................................................... 6  \nPriority Low ............................................................................................................................................... 6  \nPriority Medium ........................................................................................................................................ 6  \nPriority High .............................................................................................................................................. 6  \nIT Security Incident Response Guidelines ..................................................................................................... 7  \nSecurity and Control Incident Report ........................................................................................................... 9  \nIT Security Incident Response Plan  \nPurpose  \nThe purpose of this plan is to protect the confidentiality, integrity and availability of Sarasota County Schools (“SCS”) data. The proper handling of information technology security incidents (hereinafter referred to as “security incidents”), both electronic and physical, is critical in protecting SCS. These procedures are intended to coexist with all other legally binding documents that guide the conduct of SCS employees. It is not intended to replace in part, or in whole, pertinent Florida or federal laws. Such laws include the Computer Crimes Act, Chapter 815 of the Florida Statutes; the Public Records Law; Chapter 119 of the Florida Statutes; 501.171 of Florida Statutes for security of confidential personal information; or obscenity and child pornography laws. This plan can be found in the Information Technology area of SCS’s website:  \nThe IT Security Incident Response Plan is organized into four stages.  \nIncident Identification, Containment, and Classification (stage one)  \nA security incident is a real or perceived threat which exploits or attempts to exploit vulnerability. All SCS employees are responsible for identifying and reporting possible security incidents. While some security incidents appear to be easily identified and understood, others require review and analysis to make a determination about the nature and scope of the problem. Many SCS employees will not be able to confirm a security incident, thus any abnormal events should be reported promptly. Examples of events which should be reported are:  \n􀁸 Password alterations not initiated by the user;  \n􀁸 Internet browser pop-ups that cannot be closed;  \n􀁸 Workstation infection from a virus, worm, spyware or other malicious software;  \n􀁸 Mi","cbCaiqATyT6TzcyK","https://ap.wps.com/l/cbCaiqATyT6TzcyK","pdf",705988,"English","# Purpose\n# Incident Identification, Containment, and Classification (stage one)\n## Risk Levels\n## Classification Levels\n# Investigation (stage two)\n# Notification/Alerting and Responding (stage three)\n# Escalation\n# Reporting and Documentation (stage four)\n# IT Security Incident Response Communications Plan\n## Priority Low\n## Priority Medium\n## Priority High\n# IT Security Incident Response Guidelines\n# Security and Control Incident Report","[{\"question\":\"Who is responsible for identifying and reporting security incidents in SCS?\",\"answer\":\"All SCS employees must identify and report possible security incidents. Reports are made to the Security Incident Response Team during normal business hours, or to the employee’s supervisor after hours.\"},{\"question\":\"What kinds of events should be reported as potential security incidents?\",\"answer\":\"Examples include unauthorized password changes, browser pop-ups that cannot be closed, workstation infection with malicious software, missing physical files with sensitive classifications, loss or theft of keys/ID/proxy cards, loss or theft of computer hardware, and loss or theft of mobile devices.\"},{\"question\":\"How is the IT security incident response process organized?\",\"answer\":\"The plan organizes response into four stages: incident identification/containment/classification, investigation, notification/alerting and responding, and reporting/documentation. It also defines risk and classification levels plus escalation and communications priorities.\"}]","IT Security Incident Response Plan - Security Incident Response Communications Plan | PDF"]