ISO 27001 Annex : A.12.3 Backup
ISO 27001 Annex : A.12.3 Backup Its objective is to safeguard against data loss. A.12.3.1 Information backup Control- In accordance with the agreed backup policy copies of records, program and device images shall be collected and regularly tested Implementation Guidance – The organization’s information , software, and systems backup requirements should be established with a backup policy. The policy of backup should define the requirements for retention and protection. There should be sufficient backup facilities to ensure that all important information and software can be recovered after a disaster or media failure. Related Product : ISO 27001 Lead Auditor Training And Certification ISMS The following things should be considered when designing a backup plan: Precise and full backup records should be prepared as well as recorded restoration procedures; The nature and frequency of the backup (e.g., full or differential backups) should refl...