Skip to main content

Repository → 💼 SOC 2 → 💼 A1 Additional Criteria for Availability → 💼 A1.3 The entity tests recovery plan procedures supporting system recovery\ \ to meet its objectives.

💼 A1.3-1 Implements Business Continuity Plan Testing

  • ID: /frameworks/soc-2/a1/03/01

Description

Business continuity plan testing is performed on a periodic basis. The testing includes (1) development of testing scenarios based on threat likelihood and magnitude; (2) consideration of system components from across the entity that can impair the availability; (3) scenarios that consider the potential for the lack of availability of key personnel; and (4) revision of continuity plans and systems based on test results.

Similar

  • Internal
    • ID: dec-c-35452b17

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance