STIGQter STIGQter: STIG Summary: Application Security and Development Security Technical Implementation Guide Version: 5 Release: 1 Benchmark Date: 23 Oct 2020:

Procedures must be in place to assure the appropriate physical and technical protection of the backup and restoration of the application.

DISA Rule

SV-222640r508029_rule

Vulnerability Number

V-222640

Group Title

SRG-APP-000516

Rule Version

APSC-DV-003090

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Develop and implement procedures to insure that backup and restoration assets are properly protected and stored in an area/location where it is unlikely they would be affected by an event that would affect the primary assets.

Check Contents

Validate that backup and recovery procedures incorporate protection of the backup and restoration assets.

Verify assets housing the backup data (e.g., SANS, tapes, backup directories, software) and the assets used for restoration (e.g., equipment and system software) are included in the backup and recovery procedures.

If backup and restoration devices are not included in the recovery procedures, this is a finding.

Vulnerability Number

V-222640

Documentable

False

Rule Version

APSC-DV-003090

Severity Override Guidance

Validate that backup and recovery procedures incorporate protection of the backup and restoration assets.

Verify assets housing the backup data (e.g., SANS, tapes, backup directories, software) and the assets used for restoration (e.g., equipment and system software) are included in the backup and recovery procedures.

If backup and restoration devices are not included in the recovery procedures, this is a finding.

Check Content Reference

M

Target Key

4093

Comments