Incident Response (IR) 

Purpose – 

The Incident Response Policy and associated controls describe the requirements for responding to and minimizing the impact of an information security incident impacting Tarleton State University (Tarleton). 


Scope and Roles –  

This policy applies to information resources owned or managed by Tarleton. The intended audience includes the Tarleton Chief Information Officer (CIO), Chief Information Security Officer (CISO), and information resource owners and custodians. 


Compliance – 

Incident Response controls are implemented to ensure compliance with he Texas Cyber Command (TXCC) as required by Title 1 Texas Administrative Code §477.74§477.76, the Texas Department of Information Resources (DIR) Security Control Standards Catalog, and Texas A&M University System (TAMUS) Regulation 29.01.03, Information Security.