To get the best help for your situation, first answer the questions on the guide's start page.
To get the best help for your situation, first answer the questions on the guide's start page.
If suspicions arise that the data security in your organisation has been compromised, start to investigate the incident immediately.
Make sure to check immediately that the log data of the information systems is safe, and report the matter to the police without delay.
This way, the possible damages may remain smaller and you know that you did all you could in the situation.
Swiftly gather together the persons responsible for your organisation’s
The most senior leadership of the organisation should usually be made aware of the matter. If the problem concerns an information system, the person responsible for the information system must also be involved in the communication, as well as the possible representative of the system supplier.
Between the responsible persons, you can make decisions on what measures should be taken.
If your organisation has access to data held by other organisations and your organisation is not the controller, you should contact the party controlling the data. Example: If your organisation uses data kept in the Population Information System via an interface and the data kept in your organisation’s information system is breached or leaked, you should contact the Digital and Population Data Services Agency (controller of population information).
Find out
The investigation of a data breach made to a technical environment is usually carried out using the log data on the systems, applications, servers and services.
The logs can be used to find out
Read about data breaches and log data in more detail in the National Cyber Security Centre’s publication Guide for detecting data breaches (in Finnish)Opens in a new window..
When you are reasonably sure about what has happened, assess
The risk assessment helps you decide

The information will be needed in investigating the incident and in the possible criminal investigation and court proceedings.