Article 4Note: This article is based on the final draft from the ESAs and is not yet adopted. Content of intermediate reports
Financial entitiesas defined in Article 2, points (a) to (t) shall provide at least the following information about the incident in the intermediate report:
-
incident reference code provided by the competent authorityas defined in Article 46, where applicable;
-
date and time of occurrence of the incident;
-
date and time when regular activities have been restored, where applicable;
-
information about the classification criteria that triggered the incident report;
-
type of the incident;
-
threats and techniques used by the threat actor, where applicable;
-
affected functional areas and business processes;
-
affected infrastructure components supporting business processes;
-
impact on the financial interest of clients;
-
information about reporting to other authorities;
-
temporary actions/measures taken or planned to be taken to recover from the incident; and
-
information on indicators of compromise, where applicable.