The document outlines 10 actions to take in the event of a ransomware cyber attack, in the following order:
1. Contact your IT department to alert them of the ransomware message and disconnect the affected computer from the network to prevent spreading.
2. Document all decisions made and actions taken to help investigators understand what occurred.
3. Notify your incident response team and senior leadership to engage your response plan and specialists.
4. Contact your insurance broker for guidance on recovery and claims processes.
5. Call your privacy attorney for guidance on data breach notification compliance.
6. Engage IT forensics to investigate the attack and assess damage.
7. Communicate with affected individuals about the attack details