Under active development Content is continuously updated and improved

BM-01Backup Configuration

>Control Description

Organization configures redundant systems or performs periodic backups of data to resume system operations in the event of a system failure.

Theme

Process

Type

Corrective

Policy/Standard

Backup Management Policy

>Implementation Guidance

1. Ensure that Backup and Restoration process is established, documented and communicated to all the relevant stakeholders. 2. Ensure that all the information systems have redundancy or should be backed up periodically. Periodicity of the backup should be defined basis the criticality of the information system and data. 3. Check the backup configuration for all the storage/database resources whether on-prem or on cloud. 4. Ensure that alert are in place for backup failures and all backup failures are handled appropriately.

>Testing Procedure

1. Inspect documentation to determine whether requirements for the configuration of redundant systems or performance of periodic backups of data to resume system operations are defined. 2.Inspect redundancy or system backup configurations for production systems to determine type, frequency, and storage of backups. 3. Inspect sample alerts for failed backups and validate the remediation steps.

>Audit Artifacts

E-BM-01
E-BM-07

>Framework Mappings

Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.

Ask AI

Configure your API key to use AI features.