last sync: 2024-Sep-18 17:50:24 UTC

Microsoft Managed Control 1261 - Contingency Plan Testing | Regulatory Compliance - Contingency Planning

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1261 - Contingency Plan Testing
Id 65aeceb5-a59c-4cb1-8d82-9c474be5d431
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Contingency Planning control
Additional metadata Name/Id: ACF1261 / Microsoft Managed Control 1261
Category: Contingency Planning
Title: Contingency Plan Testing - Method of Testing
Ownership: Customer, Microsoft
Description: The organization: Tests the contingency plan for the information system Annually using C+AI Security and DCS teams coordinate to perform annual contingency plan testing at each data centers consisting of separate classroom material and followed by a tabletop exercise based on an agreed upon scenario. Additional functional exercises (e.g. electrical systems) are performed around scheduled maintenance. Contingency planning for major application services are conducted by the major application to determine the effectiveness of the plan and the organizational readiness to execute the plan;
Requirements: The BCDR Team coordinates with the Drill team who schedules end-to-end recovery tests, drives execution of the tests, identifies recovery gaps, and communicates test results. At least one major end-to-end scenario at the datacenter level, including shutdown of all core mission critical services in a real-life scenario, is tested annually. In addition, each service team performs tests to exercise their scenario listed in the Azure BCP and DRP annually. These include every component and critical process listed in the Azure BCP and DRP. Also, functional exercises are completed in real time on an ongoing basis as incidents occur.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance
The following 4 compliance controls are associated with this Policy definition 'Microsoft Managed Control 1261 - Contingency Plan Testing' (65aeceb5-a59c-4cb1-8d82-9c474be5d431)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
op.cont.1 Impact analysis op.cont.1 Impact analysis 404 not found n/a n/a 68
op.cont.2 Continuity plan op.cont.2 Continuity plan 404 not found n/a n/a 68
op.cont.3 Periodic tests op.cont.3 Periodic tests 404 not found n/a n/a 91
op.cont.4 Alternative means op.cont.4 Alternative means 404 not found n/a n/a 95
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
Spain ENS 175daf90-21e1-4fec-b745-7b4c909aa94c Regulatory Compliance GA BuiltIn
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC