● Included in Standard

Record every incident. Build a picture over time.

The Incident Log gives your organisation a structured way to record, manage and track cyber incidents from initial detection through to resolution. An accurate log protects you, supports any reporting obligations and helps you learn from events.

Incident Log
4 open  ·  12 resolved this year
Phishing email reported
Reported by staff  ·  2 days ago
Investigating
Device stolen — staff laptop
Staff report  ·  5 days ago
Investigating
Listed on ransomware leak site
Dark web alert  ·  8 days ago
Investigating
Account compromise
Dark web alert  ·  2 weeks ago
Resolved

An accurate record is part of your defence.

Under the UK GDPR, certain personal data breaches must be reported to the ICO within 72 hours of becoming aware of them. That's only possible if you have a clear, timestamped record of what happened and when. The Incident Log creates that record automatically as you work through an incident.

72-hour ICO reporting

Personal data breaches above a certain threshold must be reported to the ICO within 72 hours. A complete incident log means you'll always have the information required to make that assessment and filing.

🏆

Cyber Essentials evidence

CE includes expectations around incident response. A structured log with dates, actions and resolutions is evidence that your organisation takes incidents seriously and manages them appropriately.

📈

Board and leadership reporting

The Incident Log feeds into your executive reports — so leadership always knows how many incidents occurred, how quickly they were resolved, and whether any remain open.

Log, track and resolve from one place.

Every incident moves through a clear lifecycle — from initial report through to resolution. A full action log and timestamped notes trail means you always know exactly what happened and what was done about it.

Reported
Investigating
Monitoring
Resolved
👥

Owner assignment

Assign each incident to a named owner from your team. Accountability is clear and tracked throughout the lifecycle.

📋

Notes and action log

Add timestamped notes at every stage. The complete chronological log is preserved permanently — even after the incident is resolved.

🏆

Cyber Essentials relevant flag

Tag incidents as Cyber Essentials-relevant so they're surfaced in your CE tracking and executive reports.

What counts as an incident?

Not every suspicious event is a reportable breach — but all of them are worth logging. Cyber Assure's Incident Log is designed to capture anything from a low-severity nuisance through to a significant breach.

Phishing emails received (even if not clicked)
Confirmed or suspected unauthorised access to systems or accounts
Malware detections, even if quarantined
Personal data incidents (accidental disclosure, lost devices)
System outages suspected to be security-related
Dark web alerts that involve confirmed credential use or data from your systems (not every alert needs to be an incident — use your judgement)

Build the incident record your organisation needs.

Incident Log is included in all Cyber Assure plans. Get in touch to find out more.

Get StartedView Pricing