Backups of critical data are taken regularly and stored securely
Sekit's Secrets management policy is part of A.5.1's topic-specific policy layer: it requires passwords, API keys and other credentials to live only in an approved vault, never in documents or chat.
Requiring every password, API key and credential to live in an approved vault supports A.5.17's authentication-information requirement by covering machine secrets, but it does not give users the guidance A.5.17 also requires on choosing and protecting their own credentials.