Skip to content
arrow_back
search
E8-AH-ML2.16 bolt ASD Essential Eight

Cybersecurity incidents must be reported immediately to the CISO

Report any cybersecurity incidents to the Chief Information Security Officer as soon as they happen.

record_voice_over

Plain language

This control is about making sure that any cyber attacks or breaches are quickly reported to the person who oversees computer security in your business. This matters because the sooner you report a problem, the faster it can be dealt with to prevent further harm or data loss.

Framework

ASD Essential Eight

Control effect

Responsive

E8 mitigation strategy

Application hardening

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML2

Official control statement

Cyber security incidents are reported to the Chief Information Security Officer, or one of their delegates, as soon as possible after they occur or are discovered.
bolt ASD Essential Eight E8-AH-ML2.16
priority_high

Why it matters

Delayed incident reporting can impede effective response, risking greater data loss, reputational damage, and non-compliance penalties.

settings

Operational notes

Publish clear CISO/delegate reporting channels and escalation steps; train staff to report incidents immediately and test the process with regular exercises.

Mapping detail

Mapping

Direction

Controls