...
"A clear statement of the policies and procedures of a CSIRT helps the constituent understand how best to report incidents and what support to expect afterwards. Will the CSIRT assist in resolving the incident? Will it provide help in avoiding incidents in the future? Clear expectations, particularly of the limitations of the services provided by a CSIRT, will make interaction with it more efficient and effective." - if you (infrastructure, collaboration, " "Constituent communities need to know exactly how their CSIRT will be working with other CSIRTs and organizations outside their constituency, and what information will be shared."
If you (a infrastructure, a collaboration, an identity source) have a means to publish information, do so. :
- publish a 'security.txt' file in its well-known location:
https://example.com/.well-known/security.txt - write the brief description of the security team in RFC2350 format.
...