There should be a type of incident report associated with the respective assets or configuration item. It is one of the requirements of the ISO 20000 incident management clause.