Sekit CSF · Business Continuity · Policy
RCF-0280Business impact analysis
The company formally analyses which business functions would be most affected if systems or services became unavailable
Mapping at a glance
RCF-0280Business impact analysisBusiness Continuity · Policy
RCF-0280 maps to 4 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.5.29Information security during disruptionsupportsDocumenting which business functions matter most and how quickly each must be restored is the foundation this control needs to know what security has to protect during a disruption.A.5.30ICT readiness for business continuitysupportsNaming which systems matter most and how fast each must be restored gives ICT readiness planning its priorities.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Business continuity plan
The plan describing how the company keeps operating during a major disruption: impact analysis, critical functions, and crisis management.
From the Sekit evidence catalog
This topic through the other lenses
All Business Continuity controls
Ask Sekura: “What evidence proves RCF-0280?”
Also via MCP, free with account