This plan defines how CandidateSeekers detects, responds to, and recovers from security incidents to minimize impact on our users and operations.
Incidents are identified through automated alerts (Vercel/Supabase monitoring), internal reports, or user reports sent to security@candidateseekers.com. The Incident Commander assesses the severity (Low, Medium, High, Critical).
Immediate action is taken to limit the scope of the incident. This may include:
The root cause is identified and removed. This includes patching vulnerabilities, removing malware, or updating misconfigured infrastructure.
Systems are restored to normal operation. Systems are monitored closely to ensure the threat does not return.
A "Post-Mortem" meeting is held within 48 hours of resolution. We analyze:
In the event of a data breach affecting user data, CandidateSeekers will notify affected users within 72 hours of confirmation, complying with GDPR and applicable laws.