BIMCO Cyber Security
BIMCO Ch10: Respond and Recover

BIMCO Cyber Security BIMCO-10.4: Data recovery capability

Be able to restore systems and data from a secure image or copy to get a clean system, with governance keeping backup images current and working, adequate backup of essential information and software, retention periods and restore scenarios prioritising critical systems, resilience for high-availability systems, and backup systems for OT vital to navigation and operation so the ship regains those capabilities quickly and safely.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 2 controls across 2 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

  • C13 Control 13: Backup and systems restore (UR E26 4.5.2)
  • NIST-CSF-RC.RP-01 The recovery portion of the incident response plan is executed once initiated from the incident response process

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in BIMCO Ch10: Respond and Recover

Query this from an agent

The graph holds this control, the 2 it maps to, and the evidence behind each claim, over MCP and REST.