Unit of competency Outline

Date retreived
22/07/2026 10:31 AM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Contribute to cyber security incident responses

Contribute to cyber security incident responses

Unit of competency
National Code
BSBXCS405
State Code
OBO69
TGA Status
Current
DTWD Status
Approved
Current Release Number
1.00
Current Release Date
28/02/2020
State Implementation and Classification
Approved Date
14/05/2020
Field of Education
029901 - Security Science
Original Release Date
14/05/2020
Nominal Hours
25
Description
This unit describes the skills and knowledge required to assist in responding to and containing cyber security incidents. It applies to those working in a broad range of industries and job roles who work alongside technical experts to develop cyber security risk-management strategies.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Confirm cyber security incident and contribute to its containment
  • 1.1 Confirm nature and location of cyber security incident according to organisational policies and procedures
  • 1.2 Estimate risk, likelihood and potential consequence of incident according to organisational response procedures
  • 1.3 Assist in ensuring that cyber incident is contained according to legislative requirements and organisational cyber security incident response plan
  • 1.4 Assist in confirming no further risks according to legislative requirements and organisational response procedures
2. Communicate information on cyber security incident
  • 2.1 Escalate cyber security incident with required workplace personnel according to organisational policies and procedures
  • 2.2 Consult with required internal and external stakeholders on communication needs relating to cyber security incident
  • 2.3 Assist in alerting required external parties according to legislative requirements and organisational procedures
3. Contribute to post-incident activities
  • 3.1 Support post-breach review and reporting
  • 3.2 Assist in identifying lessons learnt from incident response and recommended changes to cyber security response plan
  • 3.3 Assist in updating cyber security response plan to reflect review outcomes according to organisational policies and procedures
  • 3.4 Communicate lessons learnt and recommendations to required personnel
No information
No information
No information