Se rendre au contenu

Security & Compliance

Lynx Compliance - Incident (Security / Law 25 / Bill C-26)

Security incident tracking built on helpdesk.ticket. Law 25 72-hour notification countdown, Bill C-26 CCCS reporting, forensic timeline, notification log.

lynx_compliance_incident · v19.0.1.1.0 · Premium

What this solves

Lynx Compliance - Incident Response

Run security incidents on your existing helpdesk - with the Canadian regulatory clocks, forensic timeline, and notification log a Law 25 or Bill C-26 audit will demand.

Splitting incident response off into a separate ticketing system means your security team manages two queues and double-keys evidence. This module promotes helpdesk.ticket into a security-incident tracker: detection, severity, PII counts, and the 72-hour Law 25 clock all sit on the same record, with a forensic timeline and external-notification log attached. Findings escalate back into the compliance control catalog.

Key Features

  • Security incident fields on helpdesk.ticket - severity, affects_vital_system (Bill C-26), affects_personal_info (Law 25), PII count, discovered/contained/resolved timestamps.

  • Law 25 72-hour deadline - auto-computed from discovery; mail activity raised on the privacy officer when personal information is affected.

  • Bill C-26 / CCSPA notification - templated reporting to the Canadian Centre for Cyber Security when a vital system is impacted.

  • Forensic timeline - lynx.incident.timeline.event is an append-only record of who-did-what-when, with actor, source IP, and evidence links.

  • External notification log - lynx.incident.notification captures every regulator/customer/CAI message with template, recipient, delivery status, and signed audit.

  • Incident playbooks - seeded templates for common incident classes (data breach, ransomware, insider misuse) so on-call staff have a structured response.

Integrates With

  • lynx_helpdesk - reuses tickets so security ops and IT support share one queue.

  • lynx_compliance - incident outcomes drive findings and control reassessment (RS/RC functions).

  • lynx_compliance_audit_log - every state change lands in the tamper-evident chain.

Try Lynx Compliance - Incident (Security / Law 25 / Bill C-26) on your team.

Free trial, no credit card. Talk to sales when you're ready.