Under active development Content is continuously updated and improved

CP-04Contingency Plan Testing

Low
Moderate

>Control Description

a

Test the contingency plan for the system organization-defined frequency using the following tests to determine the effectiveness of the plan and the readiness to execute the plan: organization-defined tests.

b

Review the contingency plan test results; and

c

Initiate corrective actions, if needed.

>Discussion

Methods for testing contingency plans to determine the effectiveness of the plans and identify potential weaknesses include checklists, walk-through and tabletop exercises, simulations (parallel or full interrupt), and comprehensive exercises. Organizations conduct testing based on the requirements in contingency plans and include a determination of the effects on organizational operations, assets, and individuals due to contingency operations. Organizations have flexibility and discretion in the breadth, depth, and timelines of corrective actions.

>Cross-Framework Mappings

Ask AI

Configure your API key to use AI features.