s)
All incident records should be in a common format, and available for reference across other relevant support areas dependent on incident information.
t)
Security incident response plan must be established and practiced. Regular training and testing must be conducted to prepare the security team to handle security incident.
u)
The respective local regulator will be informed accordingly in the event the incident relates to security breaches, system down-time and degradation in system performance that critically affects the Group.
v)
Incident ticket log must be protected to ensure completeness and prevent unauthorized deletion of the incident records.