RC.RP-01: The recovery portion of the incident response plan is executed once initiated from the incident response process
Threats Addressed:
Previous Version:
- NIST Cybersecurity Framework v1.1:
- RC.RP-1: Recovery plan is executed during or after a cybersecurity incident
Description
[csf.tools Note: Subcategories do not have detailed descriptions. However NIST has provided the following implementation examples.]
Implementation Examples
1st: 1st Party Risk
Ex1: Begin recovery procedures during or after incident response processes
Ex2: Make all individuals with recovery responsibilities aware of the plans for recovery and the authorizations required to implement each aspect of the plans