v2.4.0 | Report Errata
docs operations docs operations

Notification Chain The break-glass activation event triggers an automated notification chain. The on-call engineering team is notified to investigate and resolve. The AI Governance Lead is notified to assess compliance implications. The DPO Liaison is notified if personal data processing is affected. Senior management is notified if the incident has business continuity implications. PagerDuty or Opsgenie automates this routing based on severity and time-of-day rules. The notification chain functions outside business hours through the on-call rotation. Each notification includes the system identifier, the person who activated break-glass, the timestamp, and any available context about the reason for activation. The notification chain is tested during the annual break-glass exercise to verify that all recipients receive alerts and respond within their defined timeframes. Key outputs

  • Automated notification to engineering, governance, DPO, and management
  • PagerDuty/Opsgenie routing with out-of-hours coverage
  • Per-notification context (system, person, timestamp, reason)
  • Annual testing through break-glass exercise
On This Page