Describe the NIST CSF Recover function as an ongoing capability, not a one-time restore activity.
The move: manage recovery as a function. NIST CSF 2.0 includes Recover so organizations maintain and restore capabilities impaired by a cybersecurity incident. The useful interpretation is broad. Recovery planning says what should happen. Recovery communications say who needs to know what, and when. Recovery improvements capture lessons so the next event is easier to handle. A restore is not the same as recovery A restore can bring bits back. Recovery brings a business capability back to a trusted, usable state. That requires dependency checks, data integrity checks, access checks, customer and internal communications, and a decision about whether normal…
Sign up free — one personalized lesson every day, matched to your role and goals.
Already have an account? Sign in