Security Incident & POPIA Compromise Response Procedure
Download PDF1. Detect and contain
Identify the event, stop ongoing exposure where safe, preserve evidence and avoid unnecessary alteration of affected systems.
2. Escalate
Notify the Information Officer/security owner promptly. Service providers/operators must escalate suspected unauthorised access to personal information to See The World Travel without delay.
3. Assess
Determine affected systems, data categories, travellers, time period, likely cause, unauthorised recipients, containment status and practical protective measures.
4. Notify
Where POPIA requires notification to the Information Regulator and affected data subjects, See The World Travel will prepare and issue the required notifications without unreasonable delay, subject to lawful instructions or restrictions.
5. Recover
Restore secure operation; rotate credentials or keys where needed; verify confidentiality, integrity and availability before normal processing resumes.
6. Learn
Record root cause, evidence, corrective action, control improvements and follow-up testing.
Trust Centre