A Capital One employee discovers that a database containing customer PII was accidentally left publicly accessible online for 48 hours. What is the FIRST step under a proper incident response plan?
-
A
Notify all affected customers by email immediately
-
B
Contain the breach by restricting access and escalate to the security and legal teams
-
C
Determine exactly which records were accessed before taking any action
-
D
Issue a public press release to maintain transparency