Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-70359 | APSC-DV-003090 | SV-84981r1_rule | Medium |
Description |
---|
Protection of backup and restoration assets is essential for the successful restore of operations after a catastrophic failure or damage to the system or data files. Failure to follow proper procedures may result in the permanent loss of system data and/or the loss of system capability resulting in failure of the customer’s mission. |
STIG | Date |
---|---|
Application Security and Development Security Technical Implementation Guide | 2017-03-20 |
Check Text ( C-70813r1_chk ) |
---|
Validate that backup and recovery procedures incorporate protection of the backup and restoration assets. Verify assets housing the backup data (e.g., SANS, tapes, backup directories, software) and the assets used for restoration (e.g., equipment and system software) are included in the backup and recovery procedures. If backup and restoration devices are not included in the recovery procedures, this is a finding. |
Fix Text (F-76595r1_fix) |
---|
Develop and implement procedures to insure that backup and restoration assets are properly protected and stored in an area/location where it is unlikely they would be affected by an event that would affect the primary assets. |