GRC Oversight

Live demoFictional sample data. Nothing is saved.

Sign up

11Compliance

Incidents & BC/DR

Track security and operational incidents from detection through post-mortem, and schedule business-continuity tabletop exercises with an after-action record.

Incidents (3)

  • Unauthorized S3 access attempt

    HIGH

    GuardDuty flagged anomalous API calls from an unrecognized IAM role against the backups bucket.

    Detected 2026-05-12 · resolved 2026-05-13 · systems: AWS S3, CI/CD

    Root cause: A CI service-role credential was accidentally committed to a public fork and used by an automated scanner.

    Post-mortem: Rotated the leaked credential within 40 minutes of detection. Confirmed no data was exfiltrated via CloudTrail review. Added secret-scanning to the CI pipeline and required org-wide branch protection on forks. Follow-up: quarterly credential rotation policy adopted.

  • Elevated error rate on billing API

    MEDIUM

    Customers reported failed checkout attempts; billing service p99 latency spiked to 12s.

    Detected 2026-04-02 · resolved 2026-04-02 · systems: Billing API, Payments

    Root cause: A downstream payment processor sandbox credential was mistakenly promoted to production during a deploy.

    Post-mortem: Rolled back the deploy within 18 minutes. Added a pre-deploy check that diff's environment secrets against an allowlist. No customer data was affected; 23 checkout attempts failed and were retried successfully.

  • Phishing attempt against Finance team

    MEDIUM

    Two employees received a spoofed invoice-approval email impersonating the CFO.

    Detected 2026-06-20 · systems: Email