Best Practice 9.3 – Have a documented
plan for responding to security events
Without a documented plan for addressing a security event involving your SAP applications, the security team’s response may be delayed, less comprehensive, and less effective both in mitigating the event and understanding its cause. Document security response patterns thoroughly for your SAP applications.
Suggestion 9.3.1 - Prepare for security events by having a documented incident management plan
This directly aligns with the AWS Well-Architected Framework Security Pillar guidance on incident response preparation. Refer to this documentation and be sure to include your SAP applications accordingly:
-
Well-Architected Framework [Security]: Incident Response – Prepare