An incident is an occurrence that actually or potentially results in adverse consequences to (adverse effects on) (poses a threat to) an information system or the information that the system processes, stores, or transmits and that may require a response action to mitigate the consequences. An incident is an occurrence that constitutes a violation or imminent threat of violation of security policies, security procedures, or acceptable use policies.

Related Term: Event, Incident Management, Incident Response, Incident Response Plan

Source: CNSSI 4009, FIPS 200, NIST SP 800-53 Rev 4, ISSG

