Sekit CSF · Business Continuity · Policy
RCF-0283Continuity plans
Formal plans exist for maintaining critical business operations during and after a significant disruption
Mapping at a glance
RCF-0283Continuity plansBusiness Continuity · Policy
RCF-0283 maps to 5 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.29Information security during disruptionsupportsApproved plans describing how critical operations continue during a major disruption support this control's requirement, but a general business continuity plan does not by itself guarantee that information security is maintained through the disruption.A.5.30ICT readiness for business continuitysupportsApproved plans for maintaining critical operations during a disruption set the scope that the ICT recovery capability in this control must be able to support.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
PR.IR-04Adequate capacity maintainedRC.RP-01Recovery plan executedRC.RP-02Recovery actions performed
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Business continuity plan
The plan describing how the company keeps operating during a major disruption: impact analysis, critical functions, and crisis management.
From the Sekit evidence catalog
This topic through the other lenses
All Business Continuity controls
Ask Sekura: “What evidence proves RCF-0283?”
Also via MCP, free with account