Categorize
Select
Implement
Assess
Authorize
Monitor
NIST SP 800-34
NIST SP 800-34
NIST SP 800-34
1
• Develop the contingency planning policy statement
2
• Conduct the business impact analysis
3
• Identify preventive controls
4
• Develop recovery strategies
5
• Develop an IT contingency plan
6
• Plan testing, training and exercise
7
• Plan maintenance
Identify critical IT
resources and
dependencies
Identify
maximum
allowable
downtime
Develop
recovery
strategies &
priorities
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning
Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning

Understanding the Risk Management Framework & (ISC)2 CAP Module 13: Contingency Planning