Skip to content

Recovery Planning

A secure cloud service offering will define, maintain, and test incident response plan(s) and recovery capabilities to ensure minimal service disruption and data loss during incidents and contingencies.

Aligning Backups with Objectives

KSI-RPL-ABO

Former ID: KSI-RPL-03

Changelog:

  • 2026-02-04: Removed italics and changed the ID as part of new standardization in v0.9.0-beta; no material changes.

Persistently review the alignment of machine-based information resource backups with defined recovery objectives.

Related SP 800-53 Controls: CM-2.3, CP-6, CP-9, CP-10, CP-10.2, SI-12


Terms: Information Resource, Machine-Based (information resources), Persistently

Aligning Recovery Plan

KSI-RPL-ARP

Former ID: KSI-RPL-02

Changelog:

  • 2026-02-04: Removed italics and changed the ID as part of new standardization in v0.9.0-beta; no material changes.

Persistently review the alignment of recovery plans with defined recovery objectives.

Related SP 800-53 Controls: CP-2, CP-2.1, CP-2.3, CP-4.1, CP-6, CP-6.1, CP-6.3, CP-7, CP-7.1, CP-7.2, CP-7.3, CP-8, CP-8.1, CP-8.2, CP-10, CP-10.2


Terms: Persistently

Reviewing Recovery Objectives

KSI-RPL-RRO

Former ID: KSI-RPL-01

Changelog:

  • 2026-02-04: Removed italics and changed the ID as part of new standardization in v0.9.0-beta; no material changes.

Persistently review desired Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO).

Related SP 800-53 Controls: CP-2.3, CP-10


Terms: Persistently

Testing Recovery Capabilities

KSI-RPL-TRC

Former ID: KSI-RPL-04

Changelog:

  • 2026-02-04: Removed italics and changed the ID as part of new standardization in v0.9.0-beta; no material changes.

Persistently test the capability to recover from incidents and contingencies, including alignment with defined recovery objectives.

Related SP 800-53 Controls: CP-2.1, CP-2.3, CP-4, CP-4.1, CP-6, CP-6.1, CP-9.1, CP-10, IR-3, IR-3.2


Terms: Incident, Persistently