Update the Primary Security Contact and CIO/CISO Contact in the Auth0 Support Center

Overview

Maintaining a current Primary Security Contact and Chief Information Security Officer (CISO) or Chief Information Officer (CIO) contact ensures Auth0 can quickly notify the appropriate personnel during a security or privacy incident. Tenant administrators can review and update these contacts directly within the Auth0 Support Center to ensure accurate communication.

Applies To

  • Auth0
  • Auth0 Support Center
  • Primary Security Contact
  • CIO/CISO Contact

Solution

What are the Primary Security and CIO/CISO contacts?

 

A Primary Security Contact is a person or group responsible for receiving notifications, maintaining systems security and privacy compliance, and responding to security or privacy incidents. Auth0 uses this contact to alert the security and privacy team about specific threats, confirm impact during an incident, or notify the organization about exposed configurations. Organizations designate a Primary Security Contact when a contract is signed, but as people change roles, these named contacts may shift, potentially preventing Auth0 from effectively communicating security-related information.

The CIO/CISO contact is the most senior person accountable for security. Auth0 contacts the CIO/CISO during a critical security event or incident to discuss critical items via web conference or phone call.

How do tenant administrators update security contacts in the Auth0 Support Center?

 

Log in to the Auth0 Support Center, navigate to the account contacts, and add or remove the required security contacts by following these steps.

NOTE: Only tenant administrators can update security contacts.

  1. Authenticate on the Auth0 Support Center by selecting the Log In option.
  2. Under the user profile, select the option for Account Contacts.
    Account Contacts
  3. On the My Account Contacts page, review the Primary Security Contacts and CIO/CISO Contacts defined for the organization.
    My Account Contacts
  4. If a contact is not listed, select the Search contacts button and type the name of the individual to add.
    NOTE: Multiple contacts can serve as the Primary Security Contact by selecting and updating them individually. However, Auth0 recommends defining only one CIO/CISO contact.
    Search for Contact
  5. After selecting the contact, select Add contact.
    Select and Add contact
  6. Specify the type of contact being added, Primary Security Contact and/or Primary CIO/CISO Contact, and select Confirm.
    Add Contact - Select Contact Type
  7. To add a contact not currently listed in the Auth0 system, select Add new contact.
    Add New Contact not in system
  8. Enter the information for the new security contact and select Confirm.
    Add New Contact Detail Form
  9. After adding a new contact, Auth0 displays a message indicating the request was received, followed by a confirmation message when the new contact is added.
    Creating Contact Message
    Security Contact Added message
  10. To remove an existing Primary Security or CIO/CISO Contact, select the Remove icon.
    Remove Security Contact

Auth0 sends an email notification with the updates made once a primary security or CIO/CISO contact is added or removed.

NOTE: If any additional contact information, such as a phone number or email address, needs updating, contact the Technical Account Manager. For issues with adding a security contact, contact the Technical Account Manager or create a support ticket.

Recommended content

No recommended content found...