A structured approach for managing and mitigating the impact of data breaches (not explicitly defined in GDPR but essential for compliance under Articles 33–34).