DocumentClosedreport
Data Breach Response Plan
Council for GeoscienceRef: https://www.geoscience.org.za/data-breach-response-plan/
Official source
Source domain: geoscience.org.za
Collected on 1 August 2026
Always confirm details on the official source before acting.
What this means
This document is the Council for Geoscience’s legally required Data Breach Response Plan, prepared to comply with POPIA Section 22. It sets out a five-step process: identify and contain the breach, assess risk, notify the Information Regulator, notify affected data subjects, and then remediate and review. The plan includes specific notification details and states a version date/last updated of 31 July 2026.
Facts
Reference
https://www.geoscience.org.za/data-breach-response-plan/
Key Takeaways
- Organisation: Council for Geoscience
- Compliance basis: POPIA Section 22
- Version date / last updated: 31 July 2026
- Step 1: Immediately notify the designated Information Officer; isolate affected systems; preserve evidence/logs; document date/time/nature
- Step 3: Notify the Information Regulator of South Africa (www.justice.gov.za/inforeg; inforeg@justice.gov.za)
- Step 4: Notify affected data subjects as soon as reasonably possible; include breach description and measures; contact cgsweb@geoscience.org.za
- Step 5: Fix the vulnerability; document actions; review/update security measures
- Council for Geoscience
- Information Officer (designated)
- Information Regulator of South Africa
- POPIA (Protection of Personal Information Act)
Dates
Closing Date
31 July 2026