Continuity

MedStack Confidential

Metadata

Ensure continuity of operational systems during adverse situations

Ensure continuity of employee operations during adverse situations

Activate Emergency Mode

CodeSectionTitle
HIPAA 164.308(a)(7)(ii)(C) Emergency mode operation plan (Required)

Treat systems in order of criticality

Train, test and revise continuity plans

CodeSectionTitle
ISO A.17.1.3 Verify, review and evaluate information security continuity
HIPAA 164.308(a)(7)(ii)(D) Testing and revision procedures (Addressable)
SOC2 A1.3 The entity tests recovery plan procedures supporting system recovery to meet its objectives.

Enforcement

References

CodeSectionTitle
ISO A.17.1 Information security continuity
ISO A.17.1.1 Planning information security continuity
ISO A.17.1.2 Implementing information security continuity
CHI SR86 Testing Business Continuity Plans
HIPAA 164.308(a)(7)(i) Standard: Contingency plan
HIPAA 164.312(a)(2)(ii) Emergency access procedure (Required)
SOC2 CC7.5 The entity identifies, develops, and implements activities to recover from identified security incidents.
SOC2 A1.2 The entity authorizes, designs, develops or acquires, implements, operates, approves, maintains, and monitors environmental protections, software, data back-up processes, and recovery infrastructure to meet its objectives.