Speaker
Description
This paper presents an empirical study of incident response practices related to personal data breaches in Bulgarian organizations. The study examines how organizations detect, assess, and manage incidents involving personal data in accordance with personal data protection requirements. The research is based on data collected through a survey conducted among organizations from different economic sectors in Bulgaria. The analysis focuses on the existence of internal incident response procedures, the level of organizational preparedness, and the awareness of obligations arising from personal data breach incidents. The results reveal differences among organizations in terms of organizational measures, staff training, and incident management practices. Based on the analysis, conclusions are drawn regarding the implementation of incident response procedures and the management of personal data breach incidents in an organizational environment.