Phone
  • Printer Friendly Version
  • Decrease Text Size Increase Text Size

Disaster Recovery & Business Continuity

Disaster Recovery and Business Continuity. The Provider shall maintain a documented disaster recovery and business continuity plan (DR/BCP) that ensures the continuity of the Service and the protection of Customer Data in the event of a disaster, system failure, or other disruptive event. The DR/BCP shall include, at a minimum: (a) a Recovery Time Objective (RTO) of [X hours], meaning the Service shall be restored within [X hours] of a declared disaster; (b) a Recovery Point Objective (RPO) of [X hours], meaning Customer Data shall be recoverable to a point no more than [X hours] prior to the disaster; (c) geographically separated backup and recovery infrastructure that is not susceptible to the same risk events as the primary infrastructure; (d) automated daily backups of all Customer Data, with backups verified through regular restore testing at least quarterly; (e) an annual DR test simulating a full failover to the recovery environment, with results documented and shared with Customer upon request; (f) a communication plan that provides Customer with notification within one (1) hour of a declared disaster and regular status updates until service restoration; and (g) a post-incident review process that identifies root causes and implements corrective actions to prevent recurrence.  
No related information found for this record.