Sekit CSF · Business Continuity · Policy
RCF-0292BCP exercises
Business continuity plans are formally exercised on a regular schedule to validate their effectiveness
Mapping at a glance
RCF-0292BCP exercisesBusiness Continuity · Policy
RCF-0292 maps to 5 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.29Information security during disruptionrelatedA recurring schedule of continuity exercises is a broader commitment that also covers the disruption scenarios this control is concerned with, though its scope spans more than security.A.5.30ICT readiness for business continuityrelatedA recurring schedule of continuity exercises with named scenarios overlaps with the DR testing this control requires, viewed at the wider business level.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
PR.IR-04Adequate capacity maintainedRC.RP-01Recovery plan executedRC.RP-02Recovery actions performed
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Business continuity plan
The plan describing how the company keeps operating during a major disruption: impact analysis, critical functions, and crisis management.
From the Sekit evidence catalog
This topic through the other lenses
All Business Continuity controls
Ask Sekura: “What evidence proves RCF-0292?”
Also via MCP, free with account