Security & Compliance
Lynx Compliance - Incident (Security / Law 25 / Bill C-26)
Security incident tracking built on helpdesk.ticket. Law 25 72-hour notification countdown, Bill C-26 CCCS reporting, forensic timeline, notification log.
lynx_compliance_incident
· v19.0.1.1.0
· Premium
What this solves
Lynx Compliance - Incident Response
Run security incidents on your existing helpdesk - with the Canadian regulatory clocks, forensic timeline, and notification log a Law 25 or Bill C-26 audit will demand.
Splitting incident response off into a separate ticketing system means your security team manages two queues and double-keys evidence. This module promotes helpdesk.ticket into a security-incident tracker: detection, severity, PII counts, and the 72-hour Law 25 clock all sit on the same record, with a forensic timeline and external-notification log attached. Findings escalate back into the compliance control catalog.
Key Features
Security incident fields on helpdesk.ticket - severity, affects_vital_system (Bill C-26), affects_personal_info (Law 25), PII count, discovered/contained/resolved timestamps.
Law 25 72-hour deadline - auto-computed from discovery; mail activity raised on the privacy officer when personal information is affected.
Bill C-26 / CCSPA notification - templated reporting to the Canadian Centre for Cyber Security when a vital system is impacted.
Forensic timeline - lynx.incident.timeline.event is an append-only record of who-did-what-when, with actor, source IP, and evidence links.
External notification log - lynx.incident.notification captures every regulator/customer/CAI message with template, recipient, delivery status, and signed audit.
Incident playbooks - seeded templates for common incident classes (data breach, ransomware, insider misuse) so on-call staff have a structured response.
Integrates With
lynx_helpdesk - reuses tickets so security ops and IT support share one queue.
lynx_compliance - incident outcomes drive findings and control reassessment (RS/RC functions).
lynx_compliance_audit_log - every state change lands in the tamper-evident chain.
Try Lynx Compliance - Incident (Security / Law 25 / Bill C-26) on your team.
Free trial, no credit card. Talk to sales when you're ready.