# IR Communications and Stakeholder Notifications One-sentence definition: Preplanned, timely, accurate communications during incidents to internal/external stakeholders. ## Key Facts - Use templates; define who, what, when; legal/privacy approval gates. - Channels: ticketing, email, SMS, status page, regulator/customer notices. - Cadence set by severity; track questions and commitments. - Record all comms for audit; keep messages factual, action-oriented. - **Verify:** check official (ISC)² CBK and current exam outline. ## Exam Relevance - Choose structured comms to reduce chaos and legal risk. **Mnemonic:** “**Say** the **facts**, **follow** the plan.” ## Mini Scenario Q: Rumors spread externally—what to issue? A: Approved holding statement on status page; open comms channel. ## Revision Checklist - Two approvals. - Severity→cadence link. - Evidence requirement. ## Related [[Business Continuity Operations and Crisis Communications]] · [[Incident Classification Severity and SLAs]] · [[Tabletop Exercises (TTX) and Crisis Simulations]] · [[Reporting and Executive Summaries]] · [[Domain 7 - Index]]