Skip to main content

πŸ’Ό CP-9 INFORMATION SYSTEM BACKUP

  • Contextual name: πŸ’Ό CP-9 INFORMATION SYSTEM BACKUP
  • ID: /frameworks/nist-sp-800-53-r4/cp/09
  • Located in: πŸ’Ό CP CONTINGENCY PLANNING

Description​

The organization: CP-9a. Conducts backups of user-level information contained in the information system [Assignment: organization-defined frequency consistent with recovery time and recovery point objectives]; CP-9b. Conducts backups of system-level information contained in the information system [Assignment: organization-defined frequency consistent with recovery time and recovery point objectives]; CP-9c. Conducts backups of information system documentation including security-related documentation [Assignment: organization-defined frequency consistent with recovery time and recovery point objectives]; and CP-9d. Protects the confidentiality, integrity, and availability of backup information at storage locations.

Similar​

  • Internal
    • ID: dec-c-57dbd0fd

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.IP-4: Backups of information are conducted, maintained, and tested55

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CP-9 (1) TESTING FOR RELIABILITY _ INTEGRITY
πŸ’Ό CP-9 (2) TEST RESTORATION USING SAMPLING
πŸ’Ό CP-9 (3) SEPARATE STORAGE FOR CRITICAL INFORMATION
πŸ’Ό CP-9 (4) PROTECTION FROM UNAUTHORIZED MODIFICATION
πŸ’Ό CP-9 (5) TRANSFER TO ALTERNATE STORAGE SITE
πŸ’Ό CP-9 (6) REDUNDANT SECONDARY SYSTEM
πŸ’Ό CP-9 (7) DUAL AUTHORIZATION