Disaster Recovery
What is Disaster Recovery?
The process of restoring IT systems and data after a catastrophic event. Typically governed by a Disaster Recovery Plan (DRP) with defined RTOs and RPOs.
Related terms
Frameworks that govern disaster recovery
What the standards actually require on disaster recovery
Requirements naming disaster recovery across 6 standards, quoted from the control text.
Address business continuity and disaster recovery planning and resources within the program, including regular periodic testing and review of those capabilities and the controls described in the recovery paragraphs of the section.
CFTC-SS-22 · Business Continuity and Disaster Recovery Planning Category →Agencies must establish disaster recovery procedures and infrastructure to restore critical systems within defined timeframes.
IM8-RES.2 · Disaster Recovery →Disaster recovery procedures. Control from FFIEC IT Examination Handbook framework, domain: FFIEC IT Examination Handbook: Operational Resilience.
FFIEC-12 · Disaster recovery procedures →Establish procedures to restore lost data and resume operations. NIST recommends documented recovery procedures, alternate site arrangements, and aligned dependencies.
164.308(a)(7)(ii)(B) · Disaster Recovery Plan (Required) →ISMAP Personnel + Resilience + Supply Chain controls extend security beyond own perimeter. (1) Personnel Security and Background Checks: per ISMAP requirements + tiered background checks for personnel with access to customer data + (a) Standard CSP employees -...
ISMAP-Personnel-BackgroundChecks-Resilience-BCP-DR-SupplyChain-ThirdParty-Subcontractor-FlowDown · ISMAP Personnel Security + Background Checks + Business Continuity + Disaster Recovery + Resilience + Supply Chain Risk Management + Third Party + Subcontractor Flow-Down + Japanese Sovereignty →Business Continuity + Cyber Resilience is core per FSA Cybersecurity Guidelines + intersects with FSA Operational Resilience Framework (2023) + BCBS Principles for Operational Resilience (March 2021) + CPMI-IOSCO Guidance on Cyber Resilience for FMIs.
JP-FSA-CYB-Business-Continuity-Cyber-Resilience-RTO-RPO-Backup-Immutable-Air-Gapped-Disaster-Recovery-Ransomware-Resistance · Japan FSA Cybersecurity Business Continuity + Cyber Resilience + RTO + RPO + Backup + Immutable + Air-Gapped + Disaster Recovery + Ransomware Resistance + Operational Resilience + Critical Function Mapping + FSA Operational Resilience Framework →Questions people ask about disaster recovery
What is Disaster Recovery?
Why is Disaster Recovery important for compliance?
What concepts are related to Disaster Recovery?
Which compliance frameworks address Disaster Recovery?
Where can I learn more about Disaster Recovery?
See how Disaster Recovery applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.