Data Protection & Cyber Security

Incident Response

Exposed to a cyber attack?

Call +46 8 26 10 00

Contact us immediately if you suspect that your organisation has been exposed to a cyber incident and/or a personal data breach.

Our Cyber Incident Desk is available 24/7/365

Emergency Incident Management

Through our unique Cyber Desk, our Incident Managers are available 24/7/365 to immediately assist our clients in the event of an incident. Our Incident Response Team coordinate with our collaboration partners in the IT sector and, if requested, additional consultants in crisis management and media/PR. Thanks to our global network, we can ensure that cross-border incidents are handled quickly, professionally and effectively. Incidents we manage relate to, e.g., the GDPR, NIS2 or DORA. Every incident is different and must be handled accordingly. We evaluate which reporting obligations and deadlines the affected organisation must comply with, as well as which authority/authorities to inform.

Services we provide

Initial Response

We act as Incident Managers both physically onsite and digitally, depending on the nature of the situation. Once an incident has been identified and confirmed, we work closely with the affected organisation and, if necessary, additional relevant consultants from our global network to quickly and effectively provide an initial response that meets time-critical regulatory reporting requirements. We guide the organisation through all necessary steps to minimise the potential impact of the incident and can, together with media/PR consultants, assist in managing any damage the incident may cause to the organisation’s brand and reputation.

Our Incident Response Team can assist with, for example:

  • Coordinating external consultants, such as IT technicians, IT forensic experts, media/PR consultants, and crisis managers
  • In the case of a cross-border incident, coordinating with legal experts in other jurisdictions
  • Identifying data controllers and/or data processors
  • Analysing terms in supplier agreements and/or data processing agreements
  • Investigating and identifying any potential causes of the incident and any shortcomings that contributed to it
  • Determining whether the incident must be notified to the relevant supervisory authority/authorities
  • Drafting notification to the relevant authority/authorities
  • Determining whether the incident should be reported to the police
  • Investigating the obligation to inform customers/data subjects about the incident
  • Managing contact with the organisation’s insurance company

Recovery

When the initial and most critical phase of an incident is handled, we assist the organisation by investigating the situation, provide internal documentation and manage the contact with relevant authorities. We assist in identifying any gaps and vulnerabilities that likely caused the incident and recommend concrete action-proposals to minimise the risk of suffering future incidents. Upon request, the efforts are coordinated with our collaboration partners in the IT sector in order to evaluate technical aspects as well. By doing so, we effectively combine the technical and legal aspects. We also represent our clients in any dispute that might arise due to the incident and provide incident reports that can be used as evidence in court proceedings.

Incident Response Program​

It is becoming increasingly more common for insurance companies, accountants, suppliers and customers to demand that organisations are able to show their compliance and cyber security-related efforts in connection with the regulatory frameworks such as the GDPR, NIS2 and DORA. In order to fill this void in the market, we have established our Incident Response Program. By joining the program on an annual basis, we guarantee exclusive benefits:

• Security – Incident Managers that coordinate with all relevant parties and take all necessary actions.

• Safety – Priority and immediate incident management if an incident occurs.

• Certainty – A certificate to showcase to collaboration partners and customers that you take data protection and cyber security seriously.

Related Cyber Security Services

Compliance

Resilience