Back to opportunities
DocumentClosedreport

Data Breach Response Plan

Council for GeoscienceRef: https://www.geoscience.org.za/data-breach-response-plan/

Official source

Source domain: geoscience.org.za

Collected on 1 August 2026

Always confirm details on the official source before acting.

What this means

This document is the Council for Geoscience’s legally required Data Breach Response Plan, prepared to comply with POPIA Section 22. It sets out a five-step process: identify and contain the breach, assess risk, notify the Information Regulator, notify affected data subjects, and then remediate and review. The plan includes specific notification details and states a version date/last updated of 31 July 2026.

Facts

Reference

https://www.geoscience.org.za/data-breach-response-plan/

Key Takeaways

  • Organisation: Council for Geoscience
  • Compliance basis: POPIA Section 22
  • Version date / last updated: 31 July 2026
  • Step 1: Immediately notify the designated Information Officer; isolate affected systems; preserve evidence/logs; document date/time/nature
  • Step 3: Notify the Information Regulator of South Africa (www.justice.gov.za/inforeg; inforeg@justice.gov.za)
  • Step 4: Notify affected data subjects as soon as reasonably possible; include breach description and measures; contact cgsweb@geoscience.org.za
  • Step 5: Fix the vulnerability; document actions; review/update security measures
  • Council for Geoscience
  • Information Officer (designated)
  • Information Regulator of South Africa
  • POPIA (Protection of Personal Information Act)

Dates

Closing Date

31 July 2026