Recover
Once an organisation has implemented their response strategy the recovery process is needed to return the organisation to as close to business as usual in as timely a manner as possible. Its crucial that an organisation recovers quickly, understands what happened and improves based on this knowledge.
The Ability of an organisation to not only recover to normal quickly but to learn from and implement mitigations to the incident while reduce the potential for repeated or similar incidents.
Return to normal is not the only outcome needed from recovery
Do staff know how the incident occurred?
What where the unexpected results of the impact?
Are all systems recoverable?
Does the organisation have an effective plan to implement new mitigation strategies?
The Recover function focuses on ensuring that not only has the organisation returned to normal operation but also that approriate lessonsa have been learned and strategies updated accordingly.
Key outcomes of the recovery process.
- Ensuring the organization implements Recovery Planning processes and procedures to restore systems and/or assets affected by cybersecurity incidents
- Implementing Improvements based on lessons learned and reviews of existing strategies
- Internal and external Communications are coordinated during and following the recovery from a cybersecurity incident
The ACSC Essential 8
Covering the 8 most effective areas your organisation can target to minimise potential cyber security incidents, Have us perform an Essential 8 Maturity Assessment on your organisation and get a head start on defending your organisation.