Incident Response Plan

Illustration eines Laptops mit Warnsymbol und einer Checkliste mit Häkchen, die strukturierte Maßnahmen im Notfall darstellt.

A contingency plan sets out what to do in the event of a cyberattack or IT failure.

What does a contingency plan entail in detail?

The plan outlines clear procedures, responsibilities and measures to enable a rapid and structured response to security incidents. The aim is to minimise damage and restore operations as quickly as possible.

Where do I encounter this issue in my day-to-day work?

  • In the event of IT disruptions or system failures
  • In the event of security incidents (e.g. phishing, malware)
  • When working with IT or external service providers


Practical example: An employee clicks on a suspicious attachment. In accordance with the emergency plan, they immediately disconnect their device from the network and inform IT. This helps prevent the incident from spreading.

What can I do to improve my security?
  1. Stay calm in an emergency and follow instructions
  2. Report security incidents immediately
  3. Be familiar with the internal reporting channels

Note: A good emergency plan helps you to act quickly and correctly in an emergency.