The production instance must have a rehearsed restore path
- Risk
- High
- Evidence
- process
- Section
- Recovery
- Fix shape
- mechanism
Absent, it prevents detection, investigation or response.
Needs evidence a person keeps — an inventory, an owner, an approval.
Whether the way back exists before it is needed.
Build a process or capability.
Maps to ISO 27001SOC 2
Control Statement: The organisation must hold a restore path for the production instance that has been exercised, with the last rehearsal and its outcome recorded.
Description: This control requires the rehearsal, not the backup. Backups may well exist — taken by the hosting provider, the platform vendor or the organisation’s own infrastructure — but a restore that has never been performed is a hope, not a capability. The restore path must cover both data and configuration: a restore that resurrects yesterday’s records under last month’s configuration is an incident of its own.
Rationale: The first time a restore is attempted must not be the day one is needed. Every step that can fail — finding the backup, having the access to use it, the elapsed time, the configuration coming back in step with the data — fails cheaply in a rehearsal and expensively in an incident. An organisation that cannot say when its restore path was last exercised does not have one; it has a belief about one.
Audit Procedure:
- Confirm a documented restore path exists for the production instance, covering data and configuration.
- Confirm it has been exercised, and record when, by whom, and into what environment.
- Confirm the rehearsal’s outcome and elapsed time were recorded.
- Confirm the last rehearsal falls within the cycle the organisation has defined for it.
Remediation:
- Establish where backups live and who can perform a restore — the organisation, the hosting provider, or both.
- Exercise a restore into a non-production environment, end to end.
- Record the outcome, the elapsed time and what failed; fix what failed and record the fix.
- Define a rehearsal cycle and name its owner.
Default Value: Creatio does not rehearse restores and provides no record of one. Whether backups exist at all is a property of the hosting arrangement, not of anything visible in the instance’s configuration.
Cite this control as CRB-RECV-001, Release Readiness Benchmark v0.2.0. Verified against
Creatio 8.x. Published by ctx10; not
affiliated with or endorsed by Creatio.