# 👑 Role Profile: CIO (Chief Information Officer)

![CIO Avatar](../assets/CIO%20-%20Mgt.png)

## 📋 Role Overview
The **CIO (Chief Information Officer)** holds final authority during crises impacting core systems, approves recovery for SEV1 and SEV2 incidents, receives executive notifications, and participates in critical business decisions and BCP/DR discussions.

---

## 🎯 Mandatory Responsibilities (SOP / Authority Matrix)
- ⚖️ **Final Authority in System Crises**: Final operational authority during crises impacting core IT systems and IT infrastructure.
- ✅ **Approve Recovery (SEV1 & SEV2)**: Authorize and approve system recovery and return-to-service for SEV1 and SEV2 incidents.
- 📱 **Receive Executive Notifications**: Receive immediate executive notifications per SLA from the Incident Communicator.
- 🏛️ **BCP/DR & Critical Decisions**: Participate in critical business decisions, IT strategy alignment, and BCP/DR discussions.

---

## 🎮 TTX Scenario Responsibilities (Loan Ransomware Incident)
- Receive 15-minute executive notification of SEV-1 ransomware incident.
- Participate in Incident Commander briefings regarding loan file share isolation.
- Formally approve return to production of file server `\\FS01` alongside CISO after technical and business validation.

---

## 📝 Action Checklist
- [ ] Receive SLA notification for SEV-1 incident.
- [ ] Participate in executive briefing calls.
- [ ] Evaluate IT infrastructure risk and BCP/DR options.
- [ ] Authorize SEV1/SEV2 system recovery and return-to-service upon validation.
