Operate business continuity + disaster recovery + resilience per Oman framework + sectoral requirements. Apply NIST SP 800-34 methodology including Business Impact Analysis + recovery strategies + ISCP development + testing + maintenance. Implement backup + alternate site + recovery procedures with documented RTO / RPO per system aligned to mission criticality. Test annually via tabletop + biennially via technical recovery exercise. Maintain alignment with broader enterprise risk + insurance + crisis management.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.